
AI-Powered CVE Analysis for WordPress Plugins
We use AI to automate the differential analysis between vulnerable and patched plugin versions to understand and interpret the security issues. What we share here is research-grade proof of concept demonstrations that are then fed back into our endpoint firewall service.
WordPress Proof of Concepts
AI-assisted vulnerability analysis with PoC demonstration
March 18, 2026
CVE-2025-68854: ID Arrays <= 2.1.2 Reflected Cross-Site Scripting PoC, Patch Analysis & Rule
Medium CVE-2025-68854 in Id Arrays (CVSS 6.1): ID Arrays. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2026-24368: The Grid < 2.8.0 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2026-24368 in The Grid (CVSS 5.3): The Grid < 2.8.0 - Missing Authorization. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2026-25015: UsersWP <= 1.2.53 Cross-Site Request Forgery PoC, Patch Analysis & Rule
Medium CVE-2026-25015 in Userswp (CVSS 4.3): UsersWP. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.2.54.
March 18, 2026
CVE-2026-25014: Enter Addons <= 2.3.2 Cross-Site Request Forgery PoC, Patch Analysis & Rule
Medium CVE-2026-25014 in Enteraddons (CVSS 4.3): Enter Addons. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 2.3.3.
March 18, 2026
CVE-2025-67987: Quiz And Survey Master <= 10.3.1 Authenticated (Subscriber+) SQL Injection PoC, Patch Analysis & Rule
Medium CVE-2025-67987 in Quiz Master Next (CVSS 6.5): Quiz And Survey Master. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 10.3.2.
March 18, 2026
CVE-2026-24380: EventPrime <= 4.2.8.0 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2026-24380 in Eventprime Event Calendar Management (CVSS 5.3): EventPrime. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 4.2.8.1.
March 18, 2026
CVE-2026-25411: Revision Manager TMC <= 2.8.22 Cross-Site Request Forgery PoC, Patch Analysis & Rule
Medium CVE-2026-25411 in Revision Manager Tmc (CVSS 4.3): Revision Manager TMC. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2026-25422: Popularis Extra <= 1.2.10 Cross-Site Request Forgery PoC, Patch Analysis & Rule
Medium CVE-2026-25422 in Popularis Extra (CVSS 4.3): Popularis Extra. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.4.1.
March 18, 2026
CVE-2026-24357: Recipe Maker <= 10.2.4 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2026-24357 in Wp Recipe Maker (CVSS 4.3): Recipe Maker. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 10.3.0.
March 18, 2026
CVE-2025-69310: Woodly Core <= 1.4 Unauthenticated SQL Injection PoC, Patch Analysis & Rule
High CVE-2025-69310 in Woodly Core (CVSS 7.5): Woodly Core. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2025-69308: Nestbyte Core <= 1.2 Unauthenticated SQL Injection PoC, Patch Analysis & Rule
High CVE-2025-69308 in Nestbyte Core (CVSS 7.5): Nestbyte Core. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2026-25416: News Kit Addons For Elementor <= 1.4.2 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2026-25416 in News Kit Elementor Addons (CVSS 4.3): News Kit Addons For Elementor. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2025-68564: Sendy <= 3.4.1 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2025-68564 in Sendy (CVSS 5.3): Sendy. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 3.4.2.
March 18, 2026
CVE-2025-69306: Electio Core <= 1.4 Unauthenticated SQL Injection PoC, Patch Analysis & Rule
High CVE-2025-69306 in Electio Core (CVSS 7.5): Electio Core. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2026-25410: WP-CORS <= 0.2.2 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2026-25410 in Wp Cors (CVSS 4.3): WP-CORS. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2025-69303: ModelTheme Framework <= 1.9.2 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2025-69303 in Modeltheme Framework (CVSS 5.3): ModelTheme Framework. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2025-69307: Medinik Core <= 1.3.6 Unauthenticated SQL Injection PoC, Patch Analysis & Rule
High CVE-2025-69307 in Medinik Core (CVSS 7.5): Medinik Core. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2025-69309: Saasplate Core <= 1.2.8 Unauthenticated SQL Injection PoC, Patch Analysis & Rule
High CVE-2025-69309 in Saasplate Core (CVSS 7.5): Saasplate Core. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026
CVE-2026-25419: UpsellWP <= 2.2.3 Missing Authorization PoC, Patch Analysis & Rule
Medium CVE-2026-25419 in Checkout Upsell And Order Bumps (CVSS 4.3): UpsellWP. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 2.2.5.
March 18, 2026
CVE-2025-69365: Uroan Core <= 1.4.4 Unauthenticated SQL Injection PoC, Patch Analysis & Rule
High CVE-2025-69365 in Uroan Core (CVSS 7.5): Uroan Core. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
How Atomic Edge Works
Simple Setup. Powerful Security.
Atomic Edge acts as a security layer between your website & the internet — inspecting, filtering, and blocking malicious traffic before it ever reaches
your application.
