SupportCandy
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from April 18, 2019 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →SupportCandy 3.3.6 - 3.5.2 - Unauthenticated Ticket Content Disclosure via Auth Code Leak
SupportCandy – Helpdesk & Customer Support Ticket System <= 3.3.7 - Authentication Bypass to Support Session Takeover
SupportCandy – Helpdesk & Customer Support Ticket System <= 3.3.0 - Insecure Direct Object Reference
WordPress SupportCandy plugin <= 3.2.3 - Cross Site Scripting (XSS) vulnerability
SupportCandy < 3.1.7 - Admin+ SQLi
SupportCandy < 3.1.7 - Subscriber+ SQLi
SupportCandy < 3.1.5 - Unauthenticated SQLi
SupportCandy < 2.2.7 - Contributor+ Stored Cross-Site Scripting
SupportCandy < 2.2.7 - CSRF to Cross-Site Scripting
SupportCandy < 2.2.7 - Reflected Cross-Site Scripting
Monitor SupportCandy in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.