Monsters Editor for WP Super Edit

Monsters Editor for WP Super Edit has one disclosed vulnerability in the WordSec catalog, all reported in 2012; it remains unpatched as of September 2026. Their average CVSS score is 9.8, and the most serious one scores 9.8 out of 10. Severity breakdown: 1 critical and 0 high.

The most common weakness is Unrestricted Upload Of File With Dangerous Type, behind 1 of the records (100%).

The one issue recorded for Monsters Editor for WP Super Edit has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2012.

All of these findings were reported by CRIM3R. Monsters Editor for WP Super Edit is installed on roughly 30 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 2.3.

Strategic Overview

Avg CVSSCritical
9.8/ 10
Patch Coverage0%
Open

1

Fixed

0

Get automatic notifications for all Monsters Editor for WP Super Edit vulnerabilities before they are exploited.

Most severe open issueCVSS 9.8

Monsters Editor for WP Super Edit <= 1.1 - Arbitrary File Upload

Read the full analysis

Vulnerability Records

1 records
Plugin Profile
Latestv1.1

Monsters Editor for WP Super Edit

Guan Gui

Author

Guan Gui

0.0(0)
0/100
Last Updated
2007-09-28 (19y ago)
Active Installs
30+
Downloads
30,702
Requires WP
2.1+
Requires PHP
0+
Tested up to
WP 2.3
Created
2007-08-12 (19y ago)

Right, as a plugin for WP Super Edit, Monsters Editor (MsE) brings the magic of Fckeditor back to TinyMCE. So if you prefer TinyMCE as its concision, but used to Fckeditor’s powerful functions, then MsE is your good choice. Let’s take a look at here to see what it can do. Features: Can customize Fckeditor with fckeditor_config.js Update to the newest version of Fckeditor by yourself. Just replace the “fckeditor” directory. Uses KFM as file browser. There is an “WordPress Read More” button in it. Open in separate windows, which makes work more flexible. Based on WP Super Edit, so you get fully control about it.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C