qloapps
Security Risk Profile
42
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 4 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from January 8, 2026 to present
4
Total CVEs
2
Critical+High
0
Exploited
2
Unpatched
Threat Assessment
Avg CVSS
7.1
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
2
Critical/High
Risk Level
42/100
medium
Severity Distribution
Critical
1High
1Medium
2Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
XSS
1
2
Weak Encryption
1
3
CSRF
1
4
Malicious File Upload
1
Most Affected Products
1. QloApps QloApps3
2. Webkul QloApps2
3. QloApps QloApps hotel eCommerce1
Recent Vulnerabilities
See more →CVE-2026-25558
CVSS 4.8medium
QloApps 1.7.0 Stored XSS via SVG File Upload in Admin File Manager
6/8/2026🔧 No Patch
CVE-2026-25861
CVSS 8.2high
QloApps 1.7.0 Weak Password Hashing via MD5 in Tools.php
6/2/2026🔧 No Patch
CVE-2021-41074
CVSS 5.4medium
1/12/2026🔧 No Patch
CVE-2025-67325
CVSS 9.8critical
1/8/2026🔧 No Patch
Monitor qloapps in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.