Wedevs
27 CVEs tracked since 2023. Since Jun 2023, none of them reached CISA KEV.
Wedevs CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2023-06 | 4 | 0 |
| 2023-07 | null or fewer | |
| 2023-08 | null or fewer | |
| 2023-09 | null or fewer | |
| 2023-10 | null or fewer | |
| 2023-11 | null or fewer | |
| 2023-12 | null or fewer | |
| 2024-01 | null or fewer | |
| 2024-02 | null or fewer | |
| 2024-03 | 5 | 0 |
| 2024-04 | null or fewer | |
| 2024-05 | null or fewer | |
| 2024-06 | 5 | 0 |
| 2024-07 | null or fewer | |
| 2024-08 | null or fewer | |
| 2024-09 | null or fewer | |
| 2024-10 | null or fewer | |
| 2024-11 | null or fewer | |
| 2024-12 | null or fewer | |
| 2025-01 | null or fewer | |
| 2025-02 | null or fewer | |
| 2025-03 | null or fewer | |
| 2025-04 | null or fewer | |
| 2025-05 | null or fewer | |
| 2025-06 | null or fewer | |
| 2025-07 | null or fewer | |
| 2025-08 | null or fewer | |
| 2025-09 | null or fewer | |
| 2025-10 | null or fewer | |
| 2025-11 | null or fewer | |
| 2025-12 | null or fewer | |
| 2026-01 | null or fewer | |
| 2026-02 | null or fewer | |
| 2026-03 | null or fewer | |
| 2026-04 | null or fewer | |
| 2026-05 | null or fewer | |
| 2026-06 | null or fewer | |
| 2026-07 | 13 | 0 |
Products
The products that kept showing up in Wedevs's monthly top three, with their CVEs summed over those months.
- Wp Erp6
- Erp: Complete Hr, Accounting & Crm Suite With Woocommerce Crm Support4
- Storegrowth – Upsell, Bogo, Quick View, Direct Checkout & Side Cart For Woocommerce3
- User Frontend: AI Powered Frontend Posting, User Directory, Profile Builder, Membership & User Registration3
- Wedocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot3
- Subscribe2 – Form, Email Subscribers & Newsletters2
- Dokan Pro1
- Happy Addons For Elementor1
- Wedocs1
- Woocommerce Conversion Tracking1
Latest CVEs
The 15 most recently published vulnerabilities affecting Wedevs.
- CVE-2026-95525WordPress WP User Frontend plugin <= 4.3.11 - Arbitrary File Deletion vulnerability6.5
- CVE-2026-95524WordPress WP User Frontend plugin <= 4.3.11 - Bypass Vulnerability vulnerability5.3
- CVE-2026-95523WordPress WP User Frontend plugin <= 4.3.11 - Bypass Vulnerability vulnerability6.5
- CVE-2026-81283WordPress WP User Frontend plugin <= 4.3.10 - PHP Object Injection vulnerability8.8
- CVE-2026-18080ERP: Complete HR, Accounting & CRM Suite Built for WooCommerce <= 1.17.8 - Unauthenticated Arbitrary File Upload via CRM Email Connect IMAP Attachment9.8
- CVE-2026-78470WP Project Manager Pro <= 4.0.1 - Authenticated (Subscriber+) SQL Injection6.5
- CVE-2026-78262WordPress WP Project Manager plugin <= 4.0.6 - PHP Object Injection vulnerability9.8
- CVE-2026-73393WordPress Subscribe2 plugin <= 10.46 - Cross Site Scripting (XSS) vulnerability7.1
- CVE-2026-66466WordPress StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart plugin <= 2.1.1 - Broken Access Control vulnerability7.5
- CVE-2026-11421ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support <= 1.17.4 - Authenticated (Custom+) SQL Injection via 'erpadvancefilter' Parameter6.5
- CVE-2026-13110StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart <= 2.1.0 - Missing Authorization to Unauthenticated Arbitrary Plugin Settings Modification via bogo_category_msg_create AJAX Action5.3
- CVE-2026-15411StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart <= 2.1.0 - Missing Authorization to Unauthenticated Options Update via create_popup AJAX Action5.3
- CVE-2026-13440StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart <= 2.1.0 - Unauthenticated Stored Cross-Site Scripting via 'message_popup' Parameter7.2
- CVE-2026-65492WordPress Dokan Pro plugin < 5.0.7 - Cross Site Scripting (XSS) vulnerability7.1
- CVE-2026-59522WordPress WP ERP plugin <= 1.17.5 - Broken Access Control vulnerability6.5
The record
- Peak rank
- #111 in Jul 2026
- Busiest month shown
- Jul 2026, 13 CVEs
- Months with a KEV entry
- 0 since Jun 2023
- Monthly snapshots
- 4 since 2023