Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2544▼ 345 respecto a la semana anterior
Críticas / altas1339▲ 68 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
7 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (6.5) | 0.41% | — | Afthemes WP Post AuthorAI | 5/8/2026 | 12/8/2026 | The WP Post Author – Author Box, Multiple Authors, Guest Authors & Custom Avatars plugin for WordPress is vulnerable to generic SQL Injection via the 'wpma_metabox_authors_list' parameter in all versions up to, and including, 3.9.1 due to insufficient escaping on the user supplied parameter and lack of sufficient… | |
| Aplazada | Alta (8.5) | 0.36% | — | Afthemes WP Post AuthorAI | 26/6/2026 | 26/6/2026 | Contributor SQL Injection in WP Post Author <= 3.9.1 versions. | |
| Modificada | Alta (7.2) | 0.48% | — | Afthemes WP Post Author | 2/1/2025 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in AF themes WP Post Author wp-post-author allows SQL Injection.This issue affects WP Post Author: from n/a through <= 3.8.2. | |
| Aplazada | Alta (7.2) | 0.51% | — | Afthemes WP Post AuthorAI | 12/10/2024 | 17/6/2026 | The WP Post Author – Boost Your Blog's Engagement with Author Box, Social Links, Co-Authors, Guest Authors, Post Rating System, and Custom User Registration Form Builder plugin for WordPress is vulnerable to time-based SQL Injection via the linked_user_id parameter in all versions up to, and including, 3.8.1 due… | |
| Modificada | Media (5.4) | 0.26% | — | Afthemes WP Post Author | 22/7/2024 | 17/6/2026 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in AF themes WP Post Author allows Stored XSS.This issue affects WP Post Author: from n/a through 3.6.7. | |
| Modificada | Media (4.3) | 0.36% | — | Afthemes WP Post Author | 6/5/2024 | 17/6/2026 | Missing Authorization vulnerability in AF themes WP Post Author.This issue affects WP Post Author: from n/a through 3.6.4. | |
| Modificada | Media (4.3) | 0.36% | — | Afthemes WP Post Author | 6/5/2024 | 17/6/2026 | Missing Authorization vulnerability in AF themes WP Post Author.This issue affects WP Post Author: from n/a through 3.6.4. |