WP Vulnerability WatchVulnerability data as of September 7, 2026

Known vulnerabilities in IMGspider – 图片采集抓取插件

IMGspider(图片蜘蛛)是一款用于WordPress文章图片抓取的WordPress插件,支持JPG, JPEG, PNG, GIF, BMP, TIF等常见图片爬取下载,实现一键抓取文章内容所有引用图片到本地服务器。 Pro版本是在原有的IMGspider图片采集插件基础上,进行全新的功能扩 …

3Reported vulnerabilities
8.8Highest CVSS score
2.3.12Latest version
2,000+Active installs

What to do now

Update IMGspider – 图片采集抓取插件 to 2.3.11 or later. 2 of these have a fixed version available. Updating resolves them.

Plugin last updated: September 15, 2025 / Tested up to WordPress: 6.8.8 / View on wordpress.org

Reported vulnerabilities

Ordered by how urgently they need attention — whether a vulnerability is actually being exploited, and how likely exploitation is, rather than CVSS severity alone.

CVESeverityExploit probability
next 30 days
Affected versionsFixed inPublished
CVE-2024-6319 High 8.8 0.9% Before 2.3.11 2.3.11 July 4, 2024
CVE-2024-6318 High 8.8 0.9% Before 2.3.11 2.3.11 July 4, 2024
CVE-2026-22482 Medium 6.4 0.1% 2.3.12 and earlier January 6, 2026

Sources: vulnerability records from NVD, exploitation from CISA KEV, exploit probability from EPSS. Affected versions come from CPE ranges or from the reporting CNA.