Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Webberzone

First CVE: Feb 6, 2023Active for: 3 yearsTotal CVEs: 8

Webberzone develops a suite of WordPress plugins focused on search enhancement, content discovery, and knowledge management, presenting a modestly scoped but notably represented attack surface within the WordPress ecosystem. The vendor's durable vulnerability signal centers on application-layer input and session-handling weaknesses including cross-site request forgery, cross-site scripting, authentication bypass, and missing authorization checks that are characteristic of web plugins with user-facing and administrative surfaces. Defenders should track this vendor's plugin updates and audit custom configurations, particularly for deployments managing sensitive content; live severity and exposure counts are shown alongside this summary.

FAUCET AI Generated
8
Total CVEs
More Total CVEs than 90% of tracked vendors
1.0
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 12% of tracked vendors
5.5
Avg CVSS Score
Higher Avg CVSS Score than 22% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Webberzone over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 6, 2023
3 years ago
Most Recent CVE
Dec 9, 2024
592 days ago

Products(4 total)

Top CVEs

Signals from CVEs in this vendor scope (8 CVEs).

8 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-47238HIGH
Cross-Site Request Forgery (CSRF) vulnerability in WebberZone Top 10 – WordPress Popular posts by WebberZone plugin <= 3.3.2 versions.
Nov 9, 20238.825NONO
CVE-2024-29142HIGH
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WebberZone Better Search – Relevant search results for WordPress allows Stored
Mar 19, 20247.120NONO
CVE-2023-0252MEDIUM
The Contextual Related Posts WordPress plugin before 3.3.1 does not validate and escape some of its block options before outputting them back in a page/post where the block is embe
Feb 6, 20235.419NONO
CVE-2024-51677MEDIUM
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Knowledge Base knowledgebase allows Stored XSS.This issue affects Knowled
Nov 4, 20245.418NONO
CVE-2020-36761MEDIUM
The Top 10 plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.10.4. This is due to missing or incorrect nonce validation on the tp
Jul 12, 20234.318NONO
CVE-2021-4373MEDIUM
The Better Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5.2. This makes it possible for unauthenticated attackers to
Jun 7, 20234.317NONO
CVE-2021-4400MEDIUM
The Better Search plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.5.2. This is due to missing or incorrect nonce validation on
Jul 1, 20234.316NONO
CVE-2023-25993MEDIUM
Missing Authorization vulnerability in WebberZone Top 10 allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Top 10: from n/a through 3.2.3.
Dec 9, 20244.314NONO
View all 8 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products8 CVEs
75%
25%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network8 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None1 (12.5%)
Unknown0 (0.0%)
Required7 (87.5%)
Privileges Required
Low3 (37.5%)
High0 (0.0%)
None5 (62.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (8 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Webberzone.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Webberzone — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Webberzone's Products

View all 3 CNAs →

Top CWEs