Vulnerabilidades em rabilal
6 resultadosAnálise Vexday
A rabilal apresenta um perfil de risco moderado com 6 CVEs catalogadas, sendo 2 críticas, predominantemente ligadas a injeção SQL (CWE-89). Nenhuma vulnerabilidade está sob exploração ativa conhecida (KEV), reduzindo a ameaça imediata. O ritmo recente de disclosure é baixo (1 CVE em 90 dias), sugerindo estabilização relativa da superfície de risco.
CVE-2024-7094CRITICALJS Help Desk – The Ultimate Help Desk & Support Plugin <= 2.8.6 - Unauthenticated PHP Code Injection to Remote Code ExecutionEPSS 37.6%CVE-2023-7337HIGHJS Help Desk – AI-Powered Support & Ticketing System 2.8.2 - Unauthenticated SQL Injection via 'js-support-ticket-token-tkstatus' CookieEPSS 1.3%CVE-2024-13606HIGHJS Help Desk – The Ultimate Help Desk & Support Plugin <= 2.8.8 - Unauthenticated Sensitive Information Exposure Through Unprotected DirectoryEPSS 0.4%CVE-2024-13607MEDIUMJS Help Desk – The Ultimate Help Desk & Support Plugin <= 2.8.8 - Authenticated (Subscriber+) Insecure Direct Object ReferenceEPSS 0.4%CVE-2026-12153CRITICALWP Learn Manager <= 1.1.8 - Missing Authorization to Unauthenticated Arbitrary Plugin Installation and Activation via jslearnmanager_ajax AJAX ActionEPSS 0.4%CVE-2026-2511HIGHJS Help Desk – AI-Powered Support & Ticketing System <= 3.0.4 - Unauthenticated SQL Injection via 'multiformid' ParameterEPSS 0.3%