| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-34756 | WordPress Integration for HubSpot and Contact Form 7 plugin <= 1.3.1 - Cross Site Request Forgery (CSRF) vulnerability | CRM Perks | Integration for Contact Form 7 HubSpot | Medium | 4.3 | 2024-05-17 09:49:30 | Deep Dive |
| CVE-2024-4747 | WordPress Propovoice CRM plugin <= 1.7.6.2 - Cross Site Scripting (XSS) vulnerability | Propovoice | Propovoice CRM | High | 7.1 | 2024-05-13 09:59:16 | Deep Dive |
| CVE-2024-34817 | WordPress Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms plugin <= 1.2.0 - Cross Site Request Forgery (CSRF) vulnerability | CRM Perks | Integration for Pipedrive and Contact Form 7, WPForms, Elementor, Ninja Forms | Medium | 4.3 | 2024-05-10 08:35:23 | Deep Dive |
| CVE-2024-1173 | WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting <= 1.13.1 - Authenticated (AccountingManager+) SQL Injection | wedevs | ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support | High | 7.2 | 2024-05-02 16:52:26 | Deep Dive |
| CVE-2024-21086 | Oracle E-Business Suite 的 Oracle CRM Technical Foundation 安全漏洞 | Oracle Corporation | CRM Technical Foundation | Medium | 4.3 | 2024-04-16 21:26:27 | Deep Dive |
| CVE-2024-3691 | PHPGurukul Small CRM Registration Page sql injection | PHPGurukul | Small CRM | High | 7.3 | 2024-04-12 15:31:05 | Deep Dive |
| CVE-2024-3690 | PHPGurukul Small CRM Change Password sql injection | PHPGurukul | Small CRM | Medium | 6.3 | 2024-04-12 15:00:06 | Deep Dive |
| CVE-2024-0952 | WP ERP <= 1.12.9 - Authenticated (Accounting Manager+) SQL Injection via id | wedevs | ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support | High | 7.2 | 2024-04-09 18:59:33 | Deep Dive |
| CVE-2024-30434 | WordPress WP-CRM System plugin <= 3.2.9 - Cross Site Scripting (XSS) vulnerability | - | WP-CRM System | Medium | 5.9 | 2024-03-29 17:27:58 | Deep Dive |
| CVE-2024-30446 | WordPress CRM Perks Forms plugin <= 1.1.4 - Cross Site Scripting (XSS) vulnerability | CRM Perks | CRM Perks Forms | Medium | 6.5 | 2024-03-29 16:54:02 | Deep Dive |
| CVE-2024-30499 | WordPress CRM Perks Forms plugin <= 1.1.4 - SQL Injection vulnerability | CRM Perks | CRM Perks Forms | High | 8.5 | 2024-03-29 14:01:37 | Deep Dive |
| CVE-2024-30498 | WordPress CRM Perks Forms plugin <= 1.1.4 - Unauthenticated SQL Injection vulnerability | CRM Perks | CRM Perks Forms | Critical | 9.3 | 2024-03-29 14:00:33 | Deep Dive |
| CVE-2024-30430 | WordPress FluentCRM plugin <= 2.8.44 - Cross Site Scripting (XSS) vulnerability | WP Email Newsletter Team - FluentCRM | Fluent CRM | Medium | 5.9 | 2024-03-29 13:33:24 | Deep Dive |
| CVE-2024-0956 | WP ERP <= 1.13.0 - Authenticated (AccountingManager+) SQL Injection | wedevs | ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support | Medium | 4.9 | 2024-03-29 06:44:03 | Deep Dive |
| CVE-2024-0609 | WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting <= 1.13.1 - Unauthenticated Stored Cross-Site Scripting | wedevs | ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support | High | 7.2 | 2024-03-29 06:44:02 | Deep Dive |
| CVE-2024-0608 | WP ERP | Complete HR solution with recruitment & job listings | WooCommerce CRM & Accounting <= 1.13.1 - Authenticated (Subscriber+) SQL Injection | wedevs | ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support | Medium | 6.5 | 2024-03-29 06:44:01 | Deep Dive |
| CVE-2024-0913 | WP ERP <= 1.13.0 - Authenticated (Accounting Manager+) SQL Injection | wedevs | ERP: Complete HR, Accounting & CRM Suite with WooCommerce CRM Support | High | 7.2 | 2024-03-29 06:44:00 | Deep Dive |
| CVE-2024-1644 | Suite CRM v7.14.2 - RCE via Local File Inclusion | Suite CRM | Suite CRM | Critical | 9.9 | 2024-02-19 23:54:29 | Deep Dive |
| CVE-2024-20939 | Oracle E-Business Suite 安全漏洞 | Oracle Corporation | CRM Technical Foundation | Medium | 4.3 | 2024-02-17 01:50:14 | Deep Dive |
| CVE-2024-24742 | Cross-Site Scripting (XSS) vulnerability in SAP CRM (WebClient UI) | SAP_SE | SAP CRM (WebClient UI) | Medium | 4.1 | 2024-02-13 02:42:56 | Deep Dive |