Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

NSquared — Vulnerabilities & Security Advisories 15

Browse all 15 CVE security advisories affecting NSquared. AI-powered Chinese analysis, POCs, and references for each vulnerability.

NSquared develops enterprise collaboration software focused on document management and workflow automation. Historically, their products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and access control flaws. While no major public security incidents have been widely reported, the four CVEs on record highlight recurring issues in authentication mechanisms and insecure deserialization. Their security posture appears typical for mid-sized software vendors, with vulnerabilities primarily centered on web application interfaces and API endpoints, though no systemic compromise patterns have been documented.

CVE ID Title CVSS Severity Published
CVE-2026-94673 WordPress Simply Schedule Appointments plugin <= 1.6.12.31 - Insecure Direct Object References (IDOR) vulnerability — Simply Schedule Appointments CWE-639 5.3 Medium 2026-09-30
CVE-2026-94074 WordPress Simply Schedule Appointments plugin <= 1.6.12.29 - Broken Access Control vulnerability — Simply Schedule Appointments CWE-862 6.5 Medium 2026-09-30
CVE-2026-84764 WordPress Simply Schedule Appointments plugin <= 1.6.12.23 - Cross Site Request Forgery (CSRF) vulnerability — Simply Schedule Appointments CWE-352 8.8 High 2026-09-02
CVE-2026-65513 WordPress Simply Schedule Appointments plugin <= 1.6.12.10 - Cross Site Scripting (XSS) vulnerability — Simply Schedule Appointments CWE-79 7.1 High 2026-08-06
CVE-2026-65508 WordPress Simply Schedule Appointments plugin <= 1.6.12.10 - SQL Injection vulnerability — Simply Schedule Appointments CWE-89 9.3 Critical 2026-08-06
CVE-2026-59523 WordPress Simply Schedule Appointments plugin <= 1.6.11.11 - Broken Access Control vulnerability — Simply Schedule Appointments CWE-862 6.5 Medium 2026-07-13
CVE-2026-57812 WordPress Simply Schedule Appointments plugin <= 1.6.12.4 - Broken Access Control vulnerability — Simply Schedule Appointments CWE-862 6.5 Medium 2026-07-13
CVE-2026-57317 WordPress Simply Schedule Appointments plugin <= 1.6.12.2 - Cross Site Scripting (XSS) vulnerability — Simply Schedule Appointments CWE-79 7.1 High 2026-06-26
CVE-2026-42384 WordPress Simply Schedule Appointments plugin < 1.6.11.2 - Sensitive Data Exposure vulnerability — Simply Schedule Appointments CWE-201 7.5 High 2026-06-15
CVE-2026-39493 WordPress Simply Schedule Appointments plugin <= 1.6.9.27 - SQL Injection vulnerability — Simply Schedule Appointments CWE-89 9.3 Critical 2026-06-15
CVE-2026-39447 WordPress Simply Schedule Appointments plugin <= 1.6.10.6 - Cross Site Scripting (XSS) vulnerability — Simply Schedule Appointments CWE-79 7.1 High 2026-06-15
CVE-2026-39694 WordPress Simply Schedule Appointments plugin <= 1.6.10.2 - Broken Access Control vulnerability — Simply Schedule Appointments CWE-862 5.3 Medium 2026-04-08
CVE-2026-39495 WordPress Simply Schedule Appointments plugin <= 1.6.9.27 - SQL Injection vulnerability — Simply Schedule Appointments CWE-89 8.5 High 2026-04-08
CVE-2025-69315 WordPress Simply Schedule Appointments plugin <= 1.6.9.15 - Broken Access Control vulnerability — Simply Schedule Appointments CWE-862 6.5 Medium 2026-01-22
CVE-2023-46616 WordPress Draw Attention plugin <= 2.0.15 - Broken Access Control vulnerability — Draw Attention CWE-862 5.4 Medium 2025-01-02

This page lists every published CVE security advisory associated with NSquared. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.