Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Najib Sinjari

#18978of 53,633
14.1Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2026-20658
5.3
2026-02-19
Unknown · Everest Forms · CVE-2026-22422
**Name of the Vulnerable Software and Affected Versions** Everest Forms versions through 3.4.1 **Description** The software contains a flaw related to improper handling of script-related HTML tags on a web page, potentially leading to code injection. This issue is identified as a Basic Cross-Site Scripting (XSS) condition. **Recommendations** Update Everest Forms to a version later than 3.4.1.
PT-2025-43308
8.8
2025-10-22
WordPress · Advanced Custom Fields : Cpt Options Pages · CVE-2025-60208
**Name of the Vulnerable Software and Affected Versions** Advanced Custom Fields : CPT Options Pages versions through 2.0.9 **Description** A Cross-Site Request Forgery (CSRF) issue exists in Tusko Trush Advanced Custom Fields : CPT Options Pages `acf-cpt-options-pages` that allows Object Injection. This impacts the application’s ability to securely handle requests, potentially allowing an attacker to perform actions on behalf of an authenticated user without their knowledge. **Recommendations** Update Advanced Custom Fields : CPT Options Pages to a version later than 2.0.9.