Known vulnerabilities in SimpleHelp
Vendor:
simple-help
Software:
SimpleHelp
Software CPE:
cpe:2.3:a:simple-help:simplehelp:*:*:*:*:*:*:*:*
Website:
https://simple-help.com/
Total vulnerabilities:
6
Public exploits:
1
Known exploited (KEV):
4
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU135974 - Improper Authentication CVE-2026-48558 |
CWE-287 | Critical | 5.5.16, 6.0 | 30.06.2026 |
SB2026063056 |
||
| #VU113347 - Cross-Site Request Forgery (CSRF) CVE-2025-36728 |
CWE-352 | Low | 5.5.11 | 28.07.2025 |
SB2025072819 |
||
| #VU113346 - Inclusion of Functionality from Untrusted Control Sphere CVE-2025-36727 |
CWE-829 | High | 5.5.12 | 28.07.2025 |
SB2025072818 |
||
| #VU103453 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2024-57727 |
CWE-22 | Medium | 5.3.9, 5.4.10, 5.5.8 | 30.01.2025 |
SB2025013032 |
||
| #VU103452 - Permissions, Privileges, and Access Controls CVE-2024-57726 |
CWE-264 | Medium | 5.3.9, 5.4.10, 5.5.8 | 30.01.2025 |
SB2025013032 |
||
| #VU103451 - Improper Link Resolution Before File Access ('Link Following') CVE-2024-57728 |
CWE-59 | Low | 5.3.9, 5.4.10, 5.5.8 | 30.01.2025 |
SB2025013032 |