Grav等都是(Grav)开源的产品。Grav是一套可扩展的用于个人博客、小型内容发布平台和单页产品展示的CMS(内容管理系统)。Gravity是一种用 C 编写的强大的、动态类型的、轻量级的、可嵌入的编程语言。Desk等都是个人开发者的产品。Desk是一款写作,博客和记笔记应用。WebSockets ws等都是(WebSockets)开源的产品。ws是一个 Node.js WebSocket 库。 WordPress plugin WP Gravity Forms FreshDesk Plugin 13
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| CRM Perks | WP Gravity Forms FreshDesk Plugin | ≤ 1.3.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| CRM Perks | WP Gravity Forms FreshDesk Plugin | 0 ~ 1.3.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-60091 | 9.8 CRITICAL | WordPress WP Gravity Forms Zoho CRM and Bigin plugin <= 1.2.9 - Deserialization of untrust |
| CVE-2025-60178 | 9.8 CRITICAL | WordPress WP Gravity Forms HubSpot plugin <= 1.2.6 - Deserialization of untrusted data vul |
| CVE-2025-60090 | 9.8 CRITICAL | WordPress WP Gravity Forms Insightly plugin <= 1.1.6 - Deserialization of untrusted data v |
| CVE-2025-60180 | 9.8 CRITICAL | WordPress WP Gravity Forms Salesforce plugin <= 1.5.1 - PHP Object Injection vulnerability |
| CVE-2025-60174 | 9.8 CRITICAL | WordPress WP Gravity Forms Constant Contact plugin plugin <= 1.1.2 - Deserialization of un |
No comments yet