All 2 CVE vulnerabilities found in Dealia – Request a quote, with AI-generated Chinese analysis, references, and POCs.
Vendor: dealia
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-2718 | Dealia <= 1.0.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Gutenberg Block Attributes CWE-79 | 6.4 | Medium | 2026-02-19 |
| CVE-2026-2504 | Dealia – Request a quote <= 1.0.7 - Missing Authorization to Authenticated (Contributor+) Plugin Configuration Reset CWE-862 | 4.3 | Medium | 2026-02-19 |
All 2 known CVE vulnerabilities affecting Dealia – Request a quote with full Chinese analysis, references, and POCs where available.