Workreap Core
by WordPress
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2026-39759 | Cri | 0.64 | 9.9 | — | Oct 6, 2026 | Employer / Sales Representative Arbitrary File Upload in Workreap Core <= 3.4.5 versions. | ||
| CVE-2025-69101 | Cri | 0.64 | 9.8 | 0.01 | Jan 22, 2026 | Authentication Bypass Using an Alternate Path or Channel vulnerability in AmentoTech Workreap Core workreap_core allows Authentication Abuse.This issue affects Workreap Core: from n/a through <= 3.4.1. |
- risk 0.64cvss 9.9epss —
Employer / Sales Representative Arbitrary File Upload in Workreap Core <= 3.4.5 versions.
- risk 0.64cvss 9.8epss 0.01
Authentication Bypass Using an Alternate Path or Channel vulnerability in AmentoTech Workreap Core workreap_core allows Authentication Abuse.This issue affects Workreap Core: from n/a through <= 3.4.1.