Browse all 3 CVE security advisories affecting WebRehab. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-15983 | Super Forms <= 6.3.316 - Authenticated (Subscriber+) Arbitrary File/Directory Deletion via 'subdir' / 'path' Parameter — Super Forms – Drag & Drop Form Builder CWE-73 | 8.1 | High | 2026-10-01 |
| CVE-2026-15989 | Super Forms <= 6.3.316 - Unauthenticated Privilege Escalation via 'role' Parameter — Super Forms – Drag & Drop Form Builder CWE-269 | 9.8 | Critical | 2026-10-01 |
| CVE-2026-14894 | Super Forms <= 6.3.313 - Unauthenticated Arbitrary File Upload via 'data' Parameter (datauristring / value) — Super Forms – Drag & Drop Form Builder CWE-434 | 9.8 | Critical | 2026-07-10 |
This page lists every published CVE security advisory associated with WebRehab. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.