Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ciphercoin

First CVE: Sep 16, 2015Active for: 11 yearsTotal CVEs: 9

Ciphercoin's vulnerability portfolio is concentrated in WordPress plugins, particularly those providing contact forms, login management, and access controls, serving a modestly represented but operationally prominent segment of web application infrastructure. Vulnerabilities affecting these plugins skew toward serious outcomes and recur through web-layer weakness classes including cross-site scripting, CSRF, authentication bypass, and injection flaws that are characteristic of form-handling and access-control code. Defenders should treat updates to these plugins as priority maintenance points for WordPress installations; current severity and exploitation activity are shown alongside this summary.

FAUCET AI Generated
9
Total CVEs
More Total CVEs than 91% of tracked vendors
0.6
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 9% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ciphercoin over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 16, 2015
10 years ago
Most Recent CVE
Jul 4, 2025
385 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (9 CVEs).

9 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-3634CRITICAL
The Contact Form 7 Database Addon WordPress plugin before 1.2.6.5 does not validate data when output it back in a CSV file, which could lead to CSV injection
Nov 21, 20229.833NONO
CVE-2021-36886HIGH
Cross-Site Request Forgery (CSRF) vulnerability discovered in Contact Form 7 Database Addon – CFDB7 WordPress plugin (versions <= 1.2.5.9).
Dec 22, 20218.828NONO
CVE-2022-4303HIGH
The WP Limit Login Attempts WordPress plugin through 2.6.4 prioritizes getting a visitor's IP from certain HTTP headers over PHP's REMOTE_ADDR, which makes it possible to bypass IP
Jan 23, 20237.525NONO
CVE-2021-24144HIGH
Unvalidated input in the Contact Form 7 Database Addon plugin, versions before 1.2.5.6, was prone to a vulnerability that lets remote attackers inject arbitrary formulas into CSV f
Mar 18, 20217.825NONO
CVE-2023-31075HIGH
Cross-Site Request Forgery (CSRF) vulnerability in Arshid Easy Hide Login.This issue affects Easy Hide Login: from n/a through 1.0.8.
Nov 18, 20238.824NONO
CVE-2021-36885MEDIUM
Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability discovered in Contact Form 7 Database Addon – CFDB7 WordPress plugin (versions <= 1.2.6.1).
Dec 22, 20216.122NONO
CVE-2015-6829HIGH
Multiple SQL injection vulnerabilities in the getip function in wp-limit-login-attempts.php in the WP Limit Login Attempts plugin before 2.0.1 for WordPress allow remote attackers
Sep 16, 20157.521NONO
CVE-2025-6740MEDIUM
The Contact Form 7 Database Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘tmpD’ parameter in all versions up to, and including, 1.3.1 due to insu
Jul 4, 20256.119NONO
CVE-2023-32505MEDIUM
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Arshid Easy Hide Login plugin <= 1.0.7 versions.
Aug 23, 20234.816NONO
View all 9 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products9 CVEs
33%
56%
11%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (11.1%)
Network7 (77.8%)
Unknown1 (11.1%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (88.9%)
High0 (0.0%)
Unknown1 (11.1%)
User Interaction
None2 (22.2%)
Unknown1 (11.1%)
Required6 (66.7%)
Privileges Required
Low0 (0.0%)
High1 (11.1%)
None7 (77.8%)
Unknown1 (11.1%)

Exploit Exposure

Signals from CVEs in this vendor scope (9 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ciphercoin.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ciphercoin — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ciphercoin's Products

View all 4 CNAs →

Top CWEs