All 3 CVE vulnerabilities found in OttoKit: All-in-One Automation Platform, with AI-generated Chinese analysis, references, and POCs.
Vendor: brainstormforce
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-4935 | SureTriggers < 1.1.23 – Unauthenticated SQLi | 9.8AI | CriticalAI | 2026-05-08 |
| CVE-2025-3102 | SureTriggers <= 1.0.78 - Authorization Bypass due to Missing Empty Value Check to Unauthenticated Administrative User Creation CWE-697 | 8.1 | High | 2025-04-10 |
| CVE-2024-5485 | SureTriggers – Connect All Your Plugins, Apps, Tools & Automate Everything! <= 1.0.46 - Authenticated (Contributor+) Stored Cross-Site Scripting via Trigger Link Shortcode CWE-79 | 6.4 | Medium | 2024-06-04 |
All 3 known CVE vulnerabilities affecting OttoKit: All-in-One Automation Platform with full Chinese analysis, references, and POCs where available.