Known Vulnerabilities for Smart Post by Unknown

Listed below are 10 of the newest known vulnerabilities associated with "Smart Post" by "Unknown".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-78150 json The Smart Post WordPress plugin before 4.0.8 does not check the type, ownership or status of the post it is asked to duplica... Not Provided 2026-09-05 2026-09-05
CVE-2026-78149 json The Smart Post WordPress plugin before 4.0.8 does not check whether a post is password protected before returning its conten... Not Provided 2026-09-05 2026-09-05
CVE-2026-72581 json A server-side request forgery (SSRF) vulnerability in duhow/xiaoai-patch through commit fb07049 allows a remote attacker to m... Not Provided 2026-08-10 2026-08-10
CVE-2026-52810 json Gogs is an open source self-hosted Git service. Prior to 0.14.3, Git smart HTTP authorizes POST …/git-receive-pack using th... Not Provided 2026-06-24 2026-06-25
CVE-2026-51724 json Incorrect access control in the delSmartQosCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers... Not Provided 2026-08-31 2026-09-01
CVE-2026-51651 json Incorrect access control in the getSmartQosCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers... Not Provided 2026-08-28 2026-09-01
CVE-2026-26369 json eNet SMART HOME server 2.2.1 and 2.3.1 contains a privilege escalation vulnerability due to insufficient authorization checks... Not Provided 2026-02-15 2026-08-24
CVE-2026-18322 json The Smart Popup by Supsystic plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including,... Not Provided 2026-08-05 2026-08-05
CVE-2026-15798 json The Smart Slider 3 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'slider' Block Attribute in all vers... Not Provided 2026-08-28 2026-08-28
CVE-2026-14203 json The Smart Manager WordPress plugin before 8.92.0 does not properly encode a post field before rendering it into an HTML attr... Not Provided 2026-07-27 2026-07-27

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report