Vulnerabilidades em saadiqbal
49 resultadosAnálise Vexday
Saadiqbal apresenta 46 vulnerabilidades catalogadas, com apenas 2 classificadas como críticas e nenhuma sob exploração ativa confirmada. A fraqueza dominante é CWE-862 (Autorização Ausente), indicando falhas no controle de acesso, enquanto o ritmo de descoberta permanece moderado com 5 vulnerabilidades nos últimos 90 dias.
CVE-2025-12362MEDIUMmyCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Program <= 2.9.7 - Missing Authorization to Unauthenticated Withdrawal Request ApprovalEPSS 0.2%CVE-2025-9219MEDIUMPost SMTP <= 3.4.1 - Missing Authorization to Authenticated (Subscriber+) Limited Plugin Option UpdateEPSS 0.2%CVE-2026-1674MEDIUMGutena Forms – Contact Form, Survey Form, Feedback Form, Booking Form, and Custom Form Builder <= 1.6.0 - Authenticated (Contributor+) Limited Options Update in save_gutena_forms_schema()EPSS 0.2%CVE-2026-3090HIGHPost SMTP <= 3.8.0 - Unauthenticated Stored Cross-Site Scripting via 'event_type'EPSS 0.2%CVE-2026-2559MEDIUMPost SMTP <= 3.8.0 - Missing Authorization to Authenticated (Subscriber+) Office 365 OAuth Configuration OverwriteEPSS 0.2%CVE-2025-12361MEDIUMmyCred – Points Management System For Gamification, Ranks, Badges, and Loyalty Program <= 2.9.7.1 - Missing Authorization to Sensitive Information ExposureEPSS 0.2%CVE-2026-12738MEDIUMWP Easy Pay <= 4.5.0 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Status Modification via wpep_draft_confirm AJAX ActionEPSS 0.2%CVE-2025-12718MEDIUMQuick Contact Form <= 8.2.6 - Unauthenticated Open Mail RelayEPSS 0.2%CVE-2026-0550MEDIUMmyCred <= 2.9.7.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'mycred_load_coupon' ShortcodeEPSS 0.2%