Vulnerabilities

Summary — last 7 days

New vulnerabilities2,731▼ 513 vs. last week
Critical / high1,299▼ 211 vs. last week
New active exploitation (KEV)3▼ 5 vs. last week
Unscored (no CVSS)225▼ 276 vs. last week
–

1 results, sorted by published date (most recent first)

CVEStatusSeverityEPSS Active exploitationAffected technologiesPublished ▼Modified Description
AnalyzedMedium (6.1)0.19%—Gwycon Quick Code9/12/20246/17/2026
The Quick Code WordPress plugin through 1.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack.
Orbitaley — Vulnerabilities