Vulnerabilidades em Nasirahmed
8 resultadosAnálise Vexday
Nasirahmed apresenta footprint reduzido com apenas 3 CVEs catalogadas, nenhuma em exploração ativa no momento. A fraqueza dominante é injeção SQL (CWE-89), padrão crítico que demanda revisão de código, mas a ausência de atualizações recentes sugere que o risco pode estar estabilizado ou o fornecedor ter baixa visibilidade em pesquisas de segurança.
CVE-2024-2387MEDIUMAdvanced Form Integration – Connect WooCommerce and Contact Form 7 to Google Sheets and other platforms <= 1.82.0 - SQL Injection to Reflected Cross-Site Scripting via integration_idEPSS 1.7%CVE-2024-10877MEDIUMAFI – The Easiest Integration Plugin <= 1.92.0 - Reflected Cross-Site ScriptingEPSS 0.6%CVE-2023-50853HIGHWordPress Connect Contact Form 7, WooCommerce To Google Sheets & Other Platforms – Advanced Form Integration Plugin <= 1.75.0 is vulnerable to SQL InjectionEPSS 0.5%CVE-2024-32134HIGHWordPress Forms to Zapier plugin <= 1.1.12 - Auth. SQL Injection vulnerabilityEPSS 0.5%CVE-2022-4974MEDIUMFreemius SDK <= 2.4.2 - Missing Authorization ChecksEPSS 0.4%CVE-2022-47173MEDIUMWordPress Connect Contact Form 7, WooCommerce To Google Sheets & Other Platforms – Advanced Form Integration Plugin <= 1.62.0 is vulnerable to Cross Site Scripting (XSS)EPSS 0.4%CVE-2026-16587MEDIUMAdvanced Form Integration <= 2.6.0 - Missing Authorization to Authenticated (Subscriber+) Arbitrary MailUp OAuth Token Overwrite via auth_redirect() FunctionEPSS 0.2%CVE-2024-43340MEDIUMWordPress AFI – The Easiest Integration Plugin plugin <= 1.89.4 - Cross Site Request Forgery (CSRF) vulnerabilityEPSS 0.2%