Количество 3
Количество 3
CVE-2026-77009
The WatchMan-Site7 WordPress plugin through 4.2.0 does not restrict access to its debugging console, which executes user-supplied PHP code, allowing any authenticated user, such as a subscriber, to run arbitrary code on the server.
GHSA-j83j-cm7x-4gpc
The WatchMan-Site7 WordPress plugin through 4.2.0 does not restrict access to its debugging console, which executes user-supplied PHP code, allowing any authenticated user, such as a subscriber, to run arbitrary code on the server.
BDU:2026-13899
Уязвимость консоли отладки плагина WatchMan-Site7 системы управления содержимым сайта WordPress, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-77009 The WatchMan-Site7 WordPress plugin through 4.2.0 does not restrict access to its debugging console, which executes user-supplied PHP code, allowing any authenticated user, such as a subscriber, to run arbitrary code on the server. | CVSS3: 9.9 | 0% Низкий | 17 дней назад | |
GHSA-j83j-cm7x-4gpc The WatchMan-Site7 WordPress plugin through 4.2.0 does not restrict access to its debugging console, which executes user-supplied PHP code, allowing any authenticated user, such as a subscriber, to run arbitrary code on the server. | CVSS3: 9.9 | 0% Низкий | 17 дней назад | |
BDU:2026-13899 Уязвимость консоли отладки плагина WatchMan-Site7 системы управления содержимым сайта WordPress, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.9 | 0% Низкий | 18 дней назад |
Уязвимостей на страницу