Appcheap provides a modestly scoped application-builder platform whose vulnerability exposures cluster around web-application input handling and authentication mechanisms, manifesting as SQL injection, open redirect, and weak password-recovery issues. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Appcheap over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-9302CRITICAL The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and includin | Oct 25, 2024 | 9.8 | 26 | NO | NO |
CVE-2024-7651HIGH The App Builder – Create Native Android & iOS Apps On The Flight plugin for WordPress is vulnerable to limited SQL Injection via the ‘app-builder-search’ parameter in all versions | Aug 21, 2024 | 7.5 | 22 | NO | NO |
CVE-2024-31282MEDIUM URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Appcheap.Io App Builder.This issue affects App Builder: from n/a through 3.8.7. | Apr 10, 2024 | 6.1 | 18 | NO | NO |
CVE-2025-49989MEDIUM Missing Authorization vulnerability in App Cheap App Builder app-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects App Builder: fro | Jun 20, 2025 | 5.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Appcheap.
Media articles that mention a CVE ID that affects a product developed by Appcheap — matched by CVE ID, not by vendor name.