Ahmad GeekyBot是Ahmad的一款功能强大的全能型人工智能插件 Ahmad GeekyBot 1.2.2及之前版本存在任意文件上传漏洞,该漏洞源于未经身份验证即可上传任意文件,可能导致攻击者上传恶意文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-48886 | 9.3 CRITICAL | WordPress JS Help Desk plugin <= 3.0.9 - SQL Injection vulnerability |
| CVE-2026-39519 | 9.3 CRITICAL | WordPress GeekyBot plugin <= 1.2.0 - SQL Injection vulnerability |
| CVE-2026-48880 | 6.5 MEDIUM | WordPress WP Job Portal plugin <= 2.5.2 - Cross Site Scripting (XSS) vulnerability |
| CVE-2026-48887 | 6.5 MEDIUM | WordPress JS Help Desk plugin <= 3.0.9 - Broken Access Control vulnerability |
No comments yet