חזרה ללוח
D21אומת חיP0
ACF Extended 0.9.2.3 < 0.9.2.6 (unauthenticated privilege escalation, exploited in the wild)
A · unauth-GETS4 · server/DBSECT1
תיקון
מורכבות low20085%
A plugin is several versions behind and vulnerable to an actively exploited unauthenticated privilege-escalation flaw.
acf-extended (plugin version)
תיק מלא
ממצאים קשורים
D22 · WooCommerce 10.4.4 < 10.5.3 (CVE-2026…D23 · WPCode 2.3.3 < 2.3.6 (CVE-2026-8832 A…D24 · Query Monitor 3.20.2 active in produc…D25 · Simple History 5.22.0 (sensitive-data…D26 · WP All Export (free) 1.4.14 `eval()` …D20 · Secrets in webroot: second `wp-config…D34 · `wp-config.php` hardening gaps: `WP_M…