Support Us — Your donation helps us keep running

Goal: 1000 CNY,Raised: 1000 CNY

100.0%
Associated Vulnerability
Found 44 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2026-22216 wpDiscuz before 7.6.47 - No Rate Limiting on Subscription Endpoints with LIKE Wildcard Bypass gVectorswpDiscuz Medium 6.5 2026-03-13 01:18:17 Deep Dive
CVE-2026-22215 wpDiscuz before 7.6.47 - Missing CSRF Protection on wpdGetFollowsPage gVectorswpDiscuz Medium 4.3 2026-03-13 01:18:15 Deep Dive
CVE-2026-22210 wpDiscuz before 7.6.47 - Cross-Site Scripting via Unescaped Attachment URLs gVectorswpDiscuz Medium 4.4 2026-03-13 01:18:14 Deep Dive
CVE-2026-22209 wpDiscuz before 7.6.47 - Cross-Site Scripting via Unescaped Custom CSS in Style Tag gVectorswpDiscuz Medium 5.5 2026-03-13 01:18:13 Deep Dive
CVE-2026-22204 wpDiscuz before 7.6.47 - Unsanitized Cookie Email Used as wp_mail() Recipient gVectorswpDiscuz Low 3.7 2026-03-13 01:18:12 Deep Dive
CVE-2026-22203 wpDiscuz before 7.6.47 - Options Export Leaks OAuth Secrets in Plaintext gVectorswpDiscuz Medium 4.9 2026-03-13 01:18:10 Deep Dive
CVE-2026-22202 wpDiscuz before 7.6.47 - Destructive GET Action Deletes All Comments by Email gVectorswpDiscuz High 8.1 2026-03-13 01:18:09 Deep Dive
CVE-2026-22201 wpDiscuz before 7.6.47 - IP Address Spoofing in getIP() gVectorswpDiscuz Medium 5.3 2026-03-13 01:18:07 Deep Dive
CVE-2026-22193 wpDiscuz before 7.6.47 - SQL Injection in getAllSubscriptions() gVectorswpDiscuz High 8.1 2026-03-13 01:18:05 Deep Dive
CVE-2026-22183 wpDiscuz before 7.6.47 - Stored Cross-Site Scripting in Inline Comment Preview gVectorswpDiscuz Medium 6.1 2026-03-13 01:18:01 Deep Dive
CVE-2026-22182 wpDiscuz before 7.6.47 - Unauthenticated Email Notification Flood via wpdCheckNotificationType gVectorswpDiscuz High 7.5 2026-03-13 01:17:59 Deep Dive
CVE-2026-28562 wpForo Forum 2.4.14 SQL Injection via Topics ORDER BY Parameter gVectors TeamwpForo Forum High 8.2 2026-02-28 21:47:42 Deep Dive
CVE-2026-28561 wpForo Forum 2.4.14 Stored XSS via Unescaped Forum Description in Templates gVectors TeamwpForo Forum Medium 5.5 2026-02-28 21:47:41 Deep Dive
CVE-2026-28560 wpForo Forum 2.4.14 Stored XSS via Unsafe JSON Encoding in Inline Script gVectors TeamwpForo Forum Medium 5.5 2026-02-28 21:47:40 Deep Dive
CVE-2026-28559 wpForo Forum 2.4.14 Information Disclosure via Global RSS Feed gVectors TeamwpForo Forum Medium 5.3 2026-02-28 21:47:39 Deep Dive
CVE-2026-28558 wpForo Forum 2.4.14 Stored XSS via SVG Avatar File Upload gVectors TeamwpForo Forum Medium 6.4 2026-02-28 21:47:38 Deep Dive
CVE-2026-28557 wpForo Forum 2.4.14 Privilege Escalation via Role Synchronization Handler gVectors TeamwpForo Forum Medium 6.5 2026-02-28 21:47:37 Deep Dive
CVE-2026-28555 wpForo Forum 2.4.14 Missing Authorization via Topic Close AJAX Handler gVectors TeamwpForo Forum Medium 4.3 2026-02-28 21:47:36 Deep Dive
CVE-2026-28556 wpForo Forum 2.4.14 Missing Authorization via Topic Management Form Handlers gVectors TeamwpForo Forum Medium 5.4 2026-02-28 21:47:36 Deep Dive
CVE-2026-28554 wpForo Forum 2.4.14 Missing Authorization via Post Approval AJAX Handler gVectors TeamwpForo Forum Medium 4.3 2026-02-28 21:47:34 Deep Dive