Atomic Edge Product

AI-Powered CVE Analysis for WordPress Plugins

We use AI to automate the differential analysis between vulnerable and patched plugin versions to understand and interpret the security issues. What we share here is research-grade proof of concept demonstrations that are then fed back into our endpoint firewall service.

WordPress Proof of Concepts

AI-assisted vulnerability analysis with PoC demonstration

March 18, 2026

CVE-2025-68031: افزونه پیامک حرفه ای فراز اس ام اس <= 2.7.3 Reflected Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2025-68031 in Farazsms (CVSS 6.1): افزونه پیامک حرفه ای فراز اس ام اس. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2025-68050: Leadpages <= 1.1.3 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2025-68050 in Leadpages (CVSS 5.3): Leadpages. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.1.4.
March 18, 2026

CVE-2025-68846: Asynchronous Javascript <= 1.3.5 Reflected Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2025-68846 in Asynchronous Javascript (CVSS 6.1): Asynchronous Javascript. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2025-67972: Prague <= 2.2.8 Unauthenticated Stored Cross-Site Scripting PoC, Patch Analysis & Rule

High CVE-2025-67972 in Prague Plugins (CVSS 7.2): Prague. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2025-14971: Link Invoice Payment for WooCommerce <= 2.8.0 Missing Authorization to Unauthenticated Arbitrary Partial Payment Creation/Cancellation PoC, Patch Analysis & Rule

Medium CVE-2025-14971 in Invoice Payment For Woocommerce (CVSS 5.3): Link Invoice Payment for WooCommerce. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 2.8.1.
March 18, 2026

CVE-2026-24523: FullCalendar <= 1.6 Unauthenticated Information Exposure PoC, Patch Analysis & Rule

Medium CVE-2026-24523 in Wp Fullcalendar (CVSS 5.3): FullCalendar. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2026-24389: Gallery PhotoBlocks <= 1.3.2 Authenticated (Contributor+) Stored Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-24389 in Photoblocks Grid Gallery (CVSS 6.4): Gallery PhotoBlocks. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.3.3.
March 18, 2026

CVE-2026-24522: Subscribe <= 1.2.16 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-24522 in Wp Subscribe (CVSS 4.3): Subscribe. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2026-24528: Nova Blocks <= 2.1.9 Authenticated (Contributor+) Stored Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-24528 in Nova Blocks (CVSS 6.4): Nova Blocks. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2026-24524: Tablesome <= 1.2.2 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-24524 in Tablesome (CVSS 4.3): Tablesome. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.2.4.
March 18, 2026

CVE-2026-24526: Email Inquiry & Cart Options for WooCommerce <= 3.4.3 Authenticated (Contributor+) Stored Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-24526 in Woocommerce Email Inquiry Cart Options (CVSS 6.4): Email Inquiry & Cart Options for WooCommerce. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2026-24377: Nexter Blocks <= 4.6.3 Authenticated (Subscriber+) Information Exposure PoC, Patch Analysis & Rule

Medium CVE-2026-24377 in The Plus Addons For Block Editor (CVSS 4.3): Nexter Blocks. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 4.6.4.
March 18, 2026

CVE-2026-24525: CLP Varnish Cache <= 1.0.2 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-24525 in Clp Varnish Cache (CVSS 5.3): CLP Varnish Cache. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.0.3.
March 18, 2026

CVE-2026-24529: Quick Restaurant Reservations <= 1.6.7 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-24529 in Quick Restaurant Reservations (CVSS 5.3): Quick Restaurant Reservations. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2026-24521: Kama Thumbnail <= 3.5.1 Cross-Site Request Forgery PoC, Patch Analysis & Rule

Medium CVE-2026-24521 in Kama Thumbnail (CVSS 4.3): Kama Thumbnail. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2026-24530: WebP Conversion <= 2.1 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-24530 in Webp Conversion (CVSS 5.3): WebP Conversion. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 2.2.
March 18, 2026

CVE-2026-25011: Custom Admin Interface <= 7.41 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-25011 in Wp Custom Admin Interface (CVSS 4.3): Custom Admin Interface. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 7.42.
March 18, 2026

CVE-2025-67970: Schedula <= 1.0 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2025-67970 in Schedula Smart Appointment Booking (CVSS 5.3): Schedula. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
March 18, 2026

CVE-2026-25010: Share This Image <= 2.09 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-25010 in Share This Image (CVSS 5.3): Share This Image. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 2.10.
March 18, 2026

CVE-2026-24536: Webpushr <= 4.38.0 Unauthenticated Information Exposure PoC, Patch Analysis & Rule

Medium CVE-2026-24536 in Webpushr Web Push Notifications (CVSS 5.3): Webpushr. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
Atomic Edge WAF security layer inspecting website traffic.

How Atomic Edge Works

Simple Setup. Powerful Security.

Atomic Edge acts as a security layer between your website & the internet — inspecting, filtering, and blocking malicious traffic before it ever reaches
your application.

See How It Works