| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-43803 | Path traversal in Arduino Create Agent | arduino | arduino-create-agent | Medium | 6.1 | 2023-10-18 20:36:30 | Deep Dive |
| CVE-2023-5161 | Modal Window <= 5.3.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | wpcalc | Modal Window – create popup modal window | Medium | 6.4 | 2023-09-26 01:51:14 | Deep Dive |
| CVE-2023-41369 | External Entity Loop vulnerability in SAP S/4HANA (Create Single Payment application) | SAP_SE | SAP S/4HANA (Create Single Payment application) | Low | 3.5 | 2023-09-12 01:59:04 | Deep Dive |
| CVE-2023-3764 | WooCommerce PDF Invoice Builder <= 1.2.90 - Cross-Site Request Forgery via Save | edgarrojas | PDF Builder for WooCommerce. Create invoices,packing slips and more | Medium | 4.3 | 2023-08-31 05:33:14 | Deep Dive |
| CVE-2023-4160 | WooCommerce PDF Invoice Builder <= 1.2.90 - Authenticated (Administrator+) Cross-Site Scripting | edgarrojas | PDF Builder for WooCommerce. Create invoices,packing slips and more | Medium | 4.4 | 2023-08-31 05:33:10 | Deep Dive |
| CVE-2023-3677 | WooCommerce PDF Invoice Builder <= 1.2.89 - Authenticated (Subscriber+) SQL Injection via Export | edgarrojas | PDF Builder for WooCommerce. Create invoices,packing slips and more | High | 8.8 | 2023-08-31 05:33:07 | Deep Dive |
| CVE-2023-4161 | WooCommerce PDF Invoice Builder <= 1.2.90 - Cross-Site Request Forgery to Custom Field Creation | edgarrojas | PDF Builder for WooCommerce. Create invoices,packing slips and more | Medium | 4.3 | 2023-08-31 05:33:06 | Deep Dive |
| CVE-2023-4245 | WooCommerce PDF Invoice Builder <= 1.2.89 - Missing Authorization to Sensitive Information Exposure | edgarrojas | PDF Builder for WooCommerce. Create invoices,packing slips and more | Medium | 4.3 | 2023-08-31 05:33:04 | Deep Dive |
| CVE-2023-32635 | Financial Services Agency XBRL 代码问题漏洞 | Financial Services Agency | XBRL data create application | 中危 | - | 2023-07-19 05:54:29 | Deep Dive |
| CVE-2021-4391 | Ultimate Gift Cards for WooCommerce <= 2.1.1 - Cross-Site Request Forgery Bypass | wpswings | Ultimate Gift Cards for WooCommerce | Medium | 4.3 | 2023-07-01 04:26:49 | Deep Dive |
| CVE-2020-36736 | WooCommerce Checkout & Funnel Builder by CartFlows – Create High Converting Stores For WooCommerce <= 1.5.15 - Cross-Site Request Forgery Bypass | brainstormforce | CartFlows – Funnel Builder & Checkout Plugin for WooCommerce | Medium | 4.3 | 2023-07-01 03:30:12 | Deep Dive |
| CVE-2019-25151 | Funnel Builder <= 1.3.0 - Arbitrary Plugin Activation | brainstormforce | CartFlows – Funnel Builder & Checkout Plugin for WooCommerce | Medium | 5.4 | 2023-06-07 01:51:52 | Deep Dive |
| CVE-2022-25855 | npm create-choo-app3 安全漏洞 | - | create-choo-app3 | High | 7.4 | 2023-02-06 05:00:01 | Deep Dive |
| CVE-2022-25908 | npm create-choo-electron 安全漏洞 | - | create-choo-electron | High | 7.4 | 2023-01-24 05:00:02 | Deep Dive |
| CVE-2022-42268 | NVIDIA Omniverse Kit 代码注入漏洞 | NVIDIA | Omniverse Audio2Face | High | 7.8 | 2023-01-12 19:38:55 | Deep Dive |
| CVE-2022-36341 | WordPress AS – Create Pinterest Pinboard Pages plugin <= 1.0 - Authenticated plugin settings change leading to Stored Cross-Site Scripting (XSS) vulnerability | Akash soni | AS – Create Pinterest Pinboard Pages (WordPress plugin) | Medium | 5.4 | 2022-08-23 15:47:18 | Deep Dive |
| CVE-2022-1894 | Popup Builder < 4.1.11 - Admin+ Stored Cross-Site Scripting | Unknown | Popup Builder – Create highly converting, mobile friendly marketing popups. | 中危 | - | 2022-07-11 12:56:21 | Deep Dive |
| CVE-2022-29447 | WordPress Hover Effects plugin <= 2.1 - Authenticated Local File Inclusion (LFI) vulnerability | Wow-Company | Hover Effects – easily create any hover effect (WordPress plugin) | Medium | 6.8 | 2022-05-20 20:17:03 | Deep Dive |
| CVE-2022-1089 | Bulk Edit and Create User Profiles < 1.5.14 - Admin+ Stored Cross-Site Scripting | Unknown | Bulk Edit and Create User Profiles – WP Sheet Editor | 中危 | - | 2022-05-16 14:30:36 | Deep Dive |
| CVE-2022-0773 | Documentor <= 1.5.3 - Unauthenticated SQLi | Unknown | Documentor – Create Product Documentation | 超危 | - | 2022-05-02 16:05:43 | Deep Dive |