7.5
CVSSv3

CVE-2022-3846

Published: 05/12/2022 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The Workreap WordPress theme prior to 2.6.3 has a vulnerability with the notifications feature as it's possible to read any user's notification (employer or freelancer) as the notification ID is brute-forceable.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

amentotech workreap