Eklenti güvenlik geçmişi
Nelio Content güvenlik açıkları
ABD Ulusal Güvenlik Açığı Veritabanı’nda (NVD) Nelio Content – Editorial Calendar & Social Media Auto-Posting eklentisi için 6 açık kaydı bulunuyor; en yenisi 3 Ekim 2026 tarihli. Bunların 2 tanesi kritik veya yüksek önemde, 0 tanesi oturum açmadan istismar edilebiliyor. Güncel sürüm 4.5.1.
- Toplam kayıt
- 6
- Kritik veya yüksek
- 2
- Oturumsuz istismar
- 0
- Son kayıt
- 3 Ekim 2026
Bilinen açık kayıtları
En yeniden eskiye. Her kaydın özgün metni NVD’de.
eksik yetki denetimi
Etkilenen sürümler: 4.5.0 ve öncesi
The Nelio Content – Editorial Calendar & Social Media Auto-Posting plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 4.5.0 This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with contributor-level access and above, to permanently delete any reusable social message (nc_reusable_social post), including those authored by administrators or other privileged users.
Türkçe kayıt ve ne yapmalıeksik yetki denetimi
Etkilenen sürümler: 4.3.4 ve öncesi
Contributor Broken Access Control in Nelio Content <= 4.3.4 versions.
sunucu taraflı istek sahteciliği (SSRF)
Etkilenen sürümler: 4.3.1 ve öncesi
Server-Side Request Forgery (SSRF) vulnerability in Nelio Software Nelio Content nelio-content allows Server Side Request Forgery.This issue affects Nelio Content: from n/a through <= 4.3.1.
SQL enjeksiyonu
Etkilenen sürümler: 4.2.0 ve öncesi
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nelio Software Nelio Content nelio-content allows Blind SQL Injection.This issue affects Nelio Content: from n/a through <= 4.2.0.
eksik yetki denetimi
Etkilenen sürümler: 4.0.5 ve öncesi
Missing Authorization vulnerability in Nelio Software Nelio Content nelio-content allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Nelio Content: from n/a through <= 4.0.5.
sunucu taraflı istek sahteciliği (SSRF)
Etkilenen sürümler: 3.2.0 ve öncesi
Server-Side Request Forgery (SSRF) vulnerability in Nelio Software Nelio Content.This issue affects Nelio Content: from n/a through 3.2.0.
Kaynak: NVD (kamu malı veri) ve WordPress.org eklenti dizini. Kayıtlar eklentinin WordPress.org adresi veya tam adıyla eşleştirilir. Veri 7 Ekim 2026 itibarıyla.