Brainstorm-force
27 CVEs tracked since 2023. Since Dec 2023, none of them reached CISA KEV.
Brainstorm-force CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2023-12 | 4 | 0 |
| 2024-01 | null or fewer | |
| 2024-02 | null or fewer | |
| 2024-03 | null or fewer | |
| 2024-04 | null or fewer | |
| 2024-05 | 8 | 0 |
| 2024-06 | 9 | 0 |
| 2024-07 | 6 | 0 |
Products
The products that kept showing up in Brainstorm-force's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 15 most recently published vulnerabilities affecting Brainstorm-force.
- CVE-2026-62134WordPress Starter Templates plugin <= 4.7.5 - Insecure Direct Object References (IDOR) vulnerability4.3
- CVE-2026-85308WordPress SureForms plugin <= 2.12.5 - Insecure Direct Object References (IDOR) vulnerability5.3
- CVE-2026-80433WordPress SureFeedback Client Site plugin <= 1.2.12 - Sensitive Data Exposure vulnerability7.5
- CVE-2026-32553WordPress OttoKit plugin <= 1.1.35 - Server Side Request Forgery (SSRF) vulnerability7.2
- CVE-2026-66698WordPress SureDash plugin <= 1.10.1 - Cross Site Scripting (XSS) vulnerability7.1
- CVE-2026-66688WordPress Ultimate Addons for Elementor plugin <= 1.45.2 - Cross Site Scripting (XSS) vulnerability6.5
- CVE-2026-57401WordPress SureDash plugin <= 1.8.0 - Arbitrary File Deletion vulnerability9.9
- CVE-2026-54813WordPress SureDash plugin <= 1.8.0 - SQL Injection vulnerability8.5
- CVE-2026-49781WordPress OttoKit plugin <= 1.1.27 - PHP Object Injection vulnerability9.8
- CVE-2026-39470WordPress WooCommerce Cart Abandonment Recovery plugin < 2.1.0 - Privilege Escalation vulnerability7.2
- CVE-2026-45442WordPress Presto Player plugin <= 4.1.3 - Broken Access Control vulnerability4.3
- CVE-2026-42648WordPress Spectra plugin <= 2.19.22 - Broken Access Control vulnerability4.3
- CVE-2026-42377WordPress SureForms Pro plugin <= 2.8.0 - Broken Access Control vulnerability7.3
- CVE-2026-39477WordPress CartFlows plugin <= 2.2.3 - Broken Access Control vulnerability4.3
- CVE-2026-39479WordPress OttoKit plugin <= 1.1.20 - SQL Injection vulnerability7.6
The record
- Peak rank
- #76 in Jun 2024
- Busiest month shown
- Jun 2024, 9 CVEs
- Months with a KEV entry
- 0 since Dec 2023
- Monthly snapshots
- 4 since 2023