Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 6 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2023-47647 WordPress BadgeOS plugin <= 3.7.1.6 - Broken Access Control vulnerability learningtimesBadgeOS Medium 4.3 2025-01-02 12:00:36 Deep Dive
CVE-2023-2173 BadgeOS <= 3.7.1.6 - Authenticated (Subscriber+) Insecure Direct Object Reference to Arbitrary Post Deletion learningtimesBadgeOS Medium 6.5 2023-08-31 05:33:14 Deep Dive
CVE-2023-2171 BadgeOS <= 3.7.1.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode learningtimesBadgeOS Medium 5.4 2023-08-31 05:33:11 Deep Dive
CVE-2023-2174 BadgeOS <= 3.7.1.6 - Missing Authorization in delete_badgeos_log_entries learningtimesBadgeOS Medium 4.3 2023-08-31 05:33:09 Deep Dive
CVE-2023-2172 BadgeOS <= 3.7.1.6 - Authenticated (Subscriber+) Insecure Direct Object Reference to Arbitrary Post Title Overwrite learningtimesBadgeOS Medium 4.3 2023-08-31 05:33:08 Deep Dive
CVE-2022-41987 WordPress BadgeOS Plugin <= 3.7.1.6 is vulnerable to Cross Site Request Forgery (CSRF) LearningTimesBadgeOS Medium 6.3 2023-05-25 10:13:51 Deep Dive