Atomic Edge Product

AI-Powered CVE Analysis for WordPress Plugins

We use AI to automate the differential analysis between vulnerable and patched plugin versions to understand and interpret the security issues. What we share here is research-grade proof of concept demonstrations that are then fed back into our endpoint firewall service.

WordPress Proof of Concepts

AI-assisted vulnerability analysis with PoC demonstration

April 6, 2026

CVE-2026-25033: Motta Addons < 1.6.1 Reflected Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-25033 in Motta Addons (CVSS 6.1): Motta Addons < 1.6.1 - Reflected Cross-Site Scripting. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-4302: WowOptin: Next-Gen Popup Maker <= 1.4.29 Unauthenticated Server-Side Request Forgery via 'link' Parameter in REST API PoC, Patch Analysis & Rule

High CVE-2026-4302 in Optin (CVSS 7.2): WowOptin: Next-Gen Popup Maker. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.4.30.
April 6, 2026

CVE-2026-32519: Bit SMTP – Easy SMTP Solution with Email Logs <= 1.2.2 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-32519 in Bit Smtp (CVSS 5.3): Bit SMTP – Easy SMTP Solution with Email Logs. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 1.2.3.
April 6, 2026

CVE-2026-31921: Product Rearrange for WooCommerce <= 1.2.2 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-31921 in Products Rearrange Woocommerce (CVSS 5.3): Product Rearrange for WooCommerce. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-31920: Product Rearrange for WooCommerce <= 1.2.2 Unauthenticated SQL Injection PoC, Patch Analysis & Rule

High CVE-2026-31920 in Products Rearrange Woocommerce (CVSS 7.5): Product Rearrange for WooCommerce. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-32539: PublishPress Revisions: Duplicate Posts, Submit, Approve and Schedule Content Changes <= 3.7.23 Unauthenticated SQL Injection PoC, Patch Analysis & Rule

High CVE-2026-32539 in Revisionary (CVSS 7.5): PublishPress Revisions: Duplicate Posts, Submit, Approve and Schedule Content Changes. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to...
April 6, 2026

CVE-2026-4350: Perfmatters <= 2.5.9.1 Authenticated (Subscriber+) Arbitrary File Deletion via 'delete' Parameter PoC, Patch Analysis & Rule

High CVE-2026-4350 in Perfmatters (CVSS 8.1): Perfmatters. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-34890: MSTW League Manager <= 2.10 Authenticated (Contributor+) Stored Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-34890 in Mstw League Manager (CVSS 6.4): MSTW League Manager. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-32497: User Verification by PickPlugins <= 2.0.45 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-32497 in User Verification (CVSS 5.3): User Verification by PickPlugins. Atomic Edge summarizes impact, exploitability, and patch details.
April 6, 2026

CVE-2026-25357: Indeed Membership Pro <= 13.7 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-25357 in Indeed Membership Pro (CVSS 5.3): Indeed Membership Pro. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-34887: Kubio AI Page Builder <= 2.7.0 Authenticated (Contributor+) Stored Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-34887 in Kubio (CVSS 6.4): Kubio AI Page Builder. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 2.7.1.
April 6, 2026

CVE-2026-1430: WP Lightbox 2 < 3.0.7 Authenticated (Administrator+) Stored Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-1430 in Wp Lightbox 2 (CVSS 4.4): WP Lightbox 2 < 3.0.7 - Authenticated (Administrator+) Stored Cross-Site Scripting. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 3.0.7.
April 6, 2026

CVE-2026-23972: Booking and Rental Manager for Bike | Car | Resort | Appointment | Dress | Equipment <= 2.6.0 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-23972 in Booking And Rental Manager For Woocommerce (CVSS 4.3): Booking and Rental Manager for Bike | Car | Resort | Appointment | Dress | Equipment. Atomic Edge summarizes impact, exploitability, and patch details, with...
April 6, 2026

CVE-2026-32501: WP Configurator Pro <= 3.7.9 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-32501 in Wp Configurator Pro (CVSS 4.3): WP Configurator Pro. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-25339: WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More <= 1.9.8.7 Unauthenticated Sensitive Information Exposure PoC, Patch Analysis & Rule

Medium CVE-2026-25339 in Wpforms Lite (CVSS 5.3): WPForms – Easy Form Builder for WordPress – Contact Forms, Payment Forms, Surveys, & More. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage...
April 6, 2026

CVE-2026-25035: Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe <= 28.1.2.2 Missing Authorization PoC, Patch Analysis & Rule

Medium CVE-2026-25035 in Contest Gallery (CVSS 5.3): Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 28.1.3.
April 6, 2026

CVE-2026-25344: Review Schema – Review & Structure Data Schema Plugin <= 2.2.6 Authenticated (Subscriber+) Information Exposure PoC, Patch Analysis & Rule

Medium CVE-2026-25344 in Review Schema (CVSS 4.3): Review Schema – Review & Structure Data Schema Plugin. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 2.2.7.
April 6, 2026

CVE-2026-25377: Addon Jobsearch Chat <= 3.0 Unauthenticated SQL Injection PoC, Patch Analysis & Rule

High CVE-2026-25377 in Addon Jobsearch Chat (CVSS 7.5): Addon Jobsearch Chat. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-25376: Addon Jobsearch Chat <= 3.0 Reflected Cross-Site Scripting PoC, Patch Analysis & Rule

Medium CVE-2026-25376 in Addon Jobsearch Chat (CVSS 6.1): Addon Jobsearch Chat. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage.
April 6, 2026

CVE-2026-32535: JS Help Desk – AI-Powered Support & Ticketing System <= 3.0.3 Authenticated (Subscriber+) Insecure Direct Object Reference PoC, Patch Analysis & Rule

Medium CVE-2026-32535 in Js Support Ticket (CVSS 4.3): JS Help Desk – AI-Powered Support & Ticketing System. Atomic Edge summarizes impact, exploitability, and patch details, with WAF rule coverage. Update to 3.0.4.
Atomic Edge WAF security layer inspecting website traffic.

How Atomic Edge Works

Simple Setup. Powerful Security.

Atomic Edge acts as a security layer between your website & the internet — inspecting, filtering, and blocking malicious traffic before it ever reaches
your application.

See How It Works