Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Support Board HIGH 8.8
CVE-2026-4815

A SQL Injection vulnerability has been found in Support Board v3.7.7. This vulnerability allows an attacker to retrieve, create, update and delete da…

Fix: 3.7.8+
Fix from $1,950 2026-03-25
Support Board MEDIUM 5.4
CVE-2026-4816

A Reflected Cross Site Scripting (XSS) vulnerability has been found in Support Board v3.7.7. This vulnerability allows an attacker to execute JavaScr…

Fix: 3.7.8+
Fix from $1,600 2026-03-25
Support Board CRITICAL 9.8
CVE-2025-4828

The Support Board plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the sb_file_delete functi…

Fix: 3.8.1+
Fix from $2,300 2025-07-09
Support Board CRITICAL 9.8
CVE-2025-4855

The Support Board plugin for WordPress is vulnerable to unauthorized access/modification/deletion of data due to use of hardcoded default secrets in …

Fix: 3.8.1+
Fix from $2,300 2025-07-09
Support Board HIGH 8.1
CVE-2021-24823

The Support Board WordPress plugin before 3.3.6 does not have any CSRF checks in actions handled by the include/ajax.php file, which could allow atta…

Fix: 3.3.6+
Fix from $1,950 2022-02-28
Support Board MEDIUM 5.4
CVE-2021-24807

The Support Board WordPress plugin before 3.3.5 allows Authenticated (Agent+) users to perform Cross-Site Scripting attacks by placing a payload in t…

Fix: 3.3.5+
Fix from $1,600 2021-11-08
Support Board Chat And Help Desk CRITICAL 9.8
CVE-2021-24741EPSS 6%

The Support Board WordPress plugin before 3.3.4 does not escape multiple POST parameters (such as status_code, department, user_id, conversation_id, …

Fix: 3.3.4+
Fix from $2,300 2021-09-20
Support Board Chat And Help Desk MEDIUM 5.4
CVE-2018-18373

In the Schiocco "Support Board - Chat And Help Desk" plugin 1.2.3 for WordPress, a Stored XSS vulnerability has been discovered in file upload areas …

No fix yet
Fix from $1,600 2018-10-17