| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-0916 | YaySMTP 2.4.9 - 2.6.2 - Unauthenticated Stored Cross-Site Scripting | yaycommerce | YaySMTP and Email Logs: Amazon SES, SendGrid, Outlook, Mailgun, Brevo, Google and Any SMTP Service | High | 7.2 | 2025-02-19 11:10:38 | Deep Dive |
| CVE-2024-54348 | WordPress Brandy theme <= 1.1.6 - Cross Site Scripting (XSS) vulnerability | yaycommerce | Brand | Medium | 6.5 | 2024-12-16 15:51:22 | Deep Dive |
| CVE-2024-7257 | YayExtra – WooCommerce Extra Product Options <= 1.3.7 - Unauthenticated Arbitrary File Upload via handle_upload_file Function | yaycommerce | YayExtra – WooCommerce Extra Product Options | Critical | 9.8 | 2024-08-03 09:37:19 | Deep Dive |
| CVE-2023-3093 | YaySMTP <= 2.4.5 - Unauthenticated Stored Cross-Site Scripting via Email | yaycommerce | YaySMTP and Email Logs: Amazon SES, SendGrid, Outlook, Mailgun, Brevo, Google and Any SMTP Service | High | 7.2 | 2023-07-12 04:38:45 | Deep Dive |