Browse all 7 CVE security advisories affecting naa986. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Naa986 is a software component commonly used in web applications and content management systems, primarily for handling user-generated content and dynamic page rendering. Historically, it has been associated with vulnerabilities including remote code execution, cross-site scripting (XSS), and privilege escalation, often stemming from insufficient input validation and improper access controls. The component has accumulated seven CVE records, with notable incidents involving RCE through unauthenticated endpoints and persistent XSS vulnerabilities in its templating engine. Security researchers have identified consistent patterns in its vulnerability profile, particularly around how it processes user-supplied data and interacts with backend systems.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2023-51689 | WordPress Easy Video Player Plugin <= 1.2.2.10 is vulnerable to Cross Site Scripting (XSS) — Easy Video PlayerCWE-79 | 6.5 | Medium | 2024-02-01 |
This page lists every published CVE security advisory associated with naa986. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.