SecAlerts
c

coderevolution

Security Risk Profile

77
/100
high

Security Risk Score

Comprehensive risk assessment based on 14 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from December 15, 2023 to present

14
Total CVEs
9
Critical+High
0
Exploited
5
Unpatched

Threat Assessment

Avg CVSS
7.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
5
Critical/High
Risk Level
77/100
high

Severity Distribution

Critical
3
High
6
Medium
5
Low
0

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
6

Age Distribution

Common Weaknesses (CWE)

1
Malicious File Upload
3
2
XSS
3
3
Input Validation
1
4
Infoleak
1

Most Affected Products

1. CodeRevolution Aiomatic Wordpress5
2. Aiomatic AI Content Writer, Editor, ChatBot & AI Toolkit3
3. CodeRevolution Wp Pocket Urls Wordpress3
4. CodeRevolution Crawlomatic Multisite Scraper Post Generator2
5. CodeRevolution Aimogen Pro1

Recent Vulnerabilities

See more →
CVE-2026-57719
CVSS 10.0critical

WordPress Aimogen Pro plugin <= 2.8.3 - Arbitrary File Upload vulnerability

Jul 13, 2026🔧 No Patch
CVE-2025-6206
CVSS 7.5EPSS 0%high

Aiomatic - AI Content Writer, Editor, ChatBot & AI Toolkit <= 2.5.0 - Authenticated (Subscriber+) Arbitrary File Upload

Jun 24, 2025🔧 No Patch
CVE-2025-49312
CVSS 7.1EPSS 0%high

WordPress Echo RSS Feed Post Generator Plugin for WordPress plugin <= 5.4.8.1 - Reflected Cross Site Scripting (XSS) vulnerability

Jun 17, 2025
CVE-2025-49294
CVSS 5.3EPSS 0%medium

WordPress Crawlomatic Multisite Scraper Post Generator plugin <= 2.6.8.2 - Sensitive Data Exposure via Log Exposure vulnerability

Jun 6, 2025
CVE-2025-49293
CVSS 4.3EPSS 0%medium

WordPress Crawlomatic Multisite Scraper Post Generator plugin <= 2.6.8.2 - Broken Access Control Vulnerability

Jun 6, 2025
CVE-2024-13882
CVSS 8.8high

Aiomatic - AI Content Writer, Editor, ChatBot & AI Toolkit <= 2.3.8 - Missing Authorization to Authenticated (Contributor+) Arbitrary File Upload

Mar 8, 2025🔧 No Patch
CVE-2024-13816
CVSS 5.4medium

Aiomatic - AI Content Writer, Editor, ChatBot & AI Toolkit <= 2.3.6 - Missing Authorization to Authenticated (Subscriber+) Multiple Administrator Actions

Mar 8, 2025🔧 No Patch
CVE-2024-51681
CVSS 6.5medium

WordPress WP Pocket URLs plugin <= 1.0.3 - Cross Site Scripting (XSS) vulnerability

Nov 4, 2024
CVE-2024-9265
CVSS 9.8EPSS 0%critical

Echo RSS Feed Post Generator <= 5.4.6 - Unauthenticated Privilege Escalation

Oct 1, 2024🔧 No Patch
CVE-2024-5969
CVSS 5.8EPSS 0%medium

AIomatic - Automatic AI Content Writer <= 2.0.5 - Unauthenticated Arbitrary Email Sending

Jul 27, 2024🔧 No Patch

Monitor coderevolution in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.

coderevolution Security Vulnerabilities & Risk Score | 14 CVEs | SecAlerts - SecAlerts