infinitewp
Security Risk Profile
92
/100
criticalSecurity Risk Score
Comprehensive risk assessment based on 7 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 5, 2015 to present
7
Total CVEs
4
Critical+High
0
Exploited
4
Unpatched
Threat Assessment
Avg CVSS
7.3
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
4
Critical/High
Risk Level
92/100
critical
🆕 1Fresh (<7d)📈 1 in Last 30 Days
Severity Distribution
Critical
1High
3Medium
2Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
SQL Injection
2
2
Path Traversal
1
3
Weak RNG
1
4
Code Injection
1
Most Affected Products
1. InfiniteWP InfiniteWP4
2. InfiniteWP Client2
3. Revmakx Infinitewp Client Wordpress2
4. InfiniteWP InfiniteWP Client1
Recent Vulnerabilities
See more →CVE-2026-15038
unknown
InfiniteWP Client < 1.13.6 - Unauthenticated Administrator Account Takeover on Multisite
8/9/2026🔧 No Patch
CVE-2024-10585
CVSS 5.3medium
InfiniteWP Client <= 1.13.0 - Unauthenticated Limited Directory Traversal to Arbitrary .txt File Reading
1/8/2025
CVE-2023-6565
CVSS 5.9medium
InfiniteWP Client <= 1.12.3 - Unauthenticated Sensitive Information Exposure
2/20/2024
CVE-2020-28642
CVSS 9.8critical
11/16/2020🔧 No Patch
CVE-2014-9521
CVSS 7.5high
1/5/2015🔧 No Patch
CVE-2014-9519
CVSS 7.5high
1/5/2015🔧 No Patch
CVE-2014-9520
CVSS 7.5high
1/5/2015🔧 No Patch
Monitor infinitewp in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.