VYPR

Gift4u

by WordPress

CVEs (2)

  • CVE-2026-57324MedJun 26, 2026
    risk 0.00cvss 6.5epss 0.00

    Unauthenticated Broken Access Control in GIFT4U <= 1.0.10 versions.

  • CVE-2026-54809CriJun 17, 2026
    risk 0.00cvss 9.3epss 0.00

    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VillaTheme GIFT4U allows Blind SQL Injection. This issue affects GIFT4U: from n/a through 1.0.10.