| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-13967 | Woodpecker for WordPress <= 3.0.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'form_name' Shortcode Attribute | woodpeckerleadform | Woodpecker for WordPress | Medium | 6.4 | 2026-01-09 11:15:32 | Deep Dive |
| CVE-2024-41122 | Custom environment variables allow to alter execution flow of plugins in Woodpecker | woodpecker-ci | woodpecker | High | 7.5 | 2024-07-19 19:58:41 | Deep Dive |
| CVE-2024-41121 | Custom workspace allow to overwrite plugin entrypoint executable in Woodpecker | woodpecker-ci | woodpecker | High | 8.8 | 2024-07-19 19:57:16 | Deep Dive |
| CVE-2023-40034 | Repositoty takeover in woodpecker-ci | woodpecker-ci | woodpecker | High | 8.1 | 2023-08-16 20:48:03 | Deep Dive |