SecAlerts
i

inspireui

Security Risk Profile

25
/100
low

Security Risk Score

Comprehensive risk assessment based on 29 vulnerabilities, EPSS scores, exploitation status, and remediation availability.

📅 Data spans from March 18, 2021 to present

29
Total CVEs
17
Critical+High
0
Exploited
7
Unpatched

Threat Assessment

Avg CVSS
7.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
7
Critical/High
Risk Level
25/100
low

Severity Distribution

Critical
11
High
6
Medium
11
Low
1

Exploit Likelihood

>50% chance
0
20-50%
0
5-20%
0
<5%
5

Age Distribution

Common Weaknesses (CWE)

1
CSRF
8
2
SQL Injection
5
3
XSS
2
4
Malicious File Upload
2

Most Affected Products

1. InspireUI Mstore Api Wordpress28
2. MStore MStore API5
3. InspireUI MStore API1

Recent Vulnerabilities

See more →
CVE-2026-3568
CVSS 4.3medium

MStore API <= 4.18.3 - Authenticated (Subscriber+) Insecure Direct Object Reference to Arbitrary User Meta Update

Apr 9, 2026🔧 No Patch
CVE-2025-4683
CVSS 4.3EPSS 0%medium

MStore API – Create Native Android & iOS Apps On The Cloud <= 4.17.5 - Missing Authorization to Authenticated (Subscriber+) Posts Creation

May 27, 2025
CVE-2025-3438
CVSS 7.3high

MStore API – Create Native Android & iOS Apps On The Cloud <= 4.17.4 - Unauthenticated Limited Privilege Escalation

May 2, 2025
CVE-2024-12042
CVSS 5.4medium

MStore API – Create Native Android & iOS Apps On The Cloud <= 4.16.4 - Authenticated (Subscriber+) HTML File Upload (Stored Cross-Site Scripting)

Dec 13, 2024
CVE-2024-11179
CVSS 6.5medium

MStore API <= 4.15.7 - Authenticated (Subscriber+) SQL Injection

Nov 20, 2024
CVE-2024-8242
CVSS 8.8EPSS 0%high

MStore API – Create Native Android & iOS Apps On The Cloud <= 4.15.3 - Authenticated (Subscriber+) Limited Arbitrary File Upload

Sep 13, 2024
CVE-2024-8269
CVSS 7.3EPSS 0%high

MStore API – Create Native Android & iOS Apps On The Cloud <= 4.15.3 - Unauthorized User Registration

Sep 13, 2024
CVE-2024-7628
CVSS 8.1EPSS 0%high

MStore API – Create Native Android & iOS Apps On The Cloud <= 4.15.2 - Authentication Bypass to Account Takeover

Aug 15, 2024
CVE-2024-6328
CVSS 9.8EPSS 0%critical

MStore API – Create Native Android & iOS Apps On The Cloud <= 4.14.7 - Authentication Bypass

Jul 12, 2024🔧 No Patch
CVE-2023-50878
CVSS 8.8high

WordPress MStore API Plugin <= 4.10.1 is vulnerable to Cross Site Request Forgery (CSRF)

Dec 29, 2023

Monitor inspireui in Real-Time

Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.

Powered bySecAlerts

Monitor Your Software Stack in Real-Time

Get instant alerts when vulnerabilities are discovered in your software stack. Stay ahead of security threats with SecAlerts.

© 2026 SecAlerts Pty Ltd. All rights reserved.