87achrafg
4 exploits
Active since May 2026
Avada (Fusion) Builder <= 3.15.2 - Remote Code Execution via PHP Function Injection
WordPress LatePoint plugin <= 5.5.1 - Privilege Escalation vulnerability
CVSS 7.5
Online Scheduling and Appointment Booking System – Bookly <= 27.2 - Unauthenticated Stored Cross-Site Scripting via 'bookly-customer-full-name' Cookie
CVSS 7.2
Avada (Fusion) Builder <= 3.15.2 - Remote Code Execution via PHP Function Injection
CVSS 9.8