Vulnerabilities

Summary — last 7 days

New vulnerabilities2,740▼ 482 vs. last week
Critical / high1,306▼ 184 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)226▼ 276 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
ModifiedMedium (4.3)0.43%—Comment License Project Comment License7/11/20226/17/2026
The Comment License WordPress plugin before 1.4.0 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
Orbitaley — Vulnerabilities