CVE-2026-42744
Received
Received - Intake
Improper Input Validation in Ads by WPQuads
Publication date: 2026-05-27
Last updated on: 2026-05-27
Assigner: Patchstack
Description
Description
Improper Validation of Specified Quantity in Input vulnerability in Ads by WPQuads Ads by WPQuads quick-adsense-reloaded allows Manipulating Hidden Fields.This issue affects Ads by WPQuads: from n/a through <= 3.0.2.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| wpquads | quick-adsense-reloaded | to 3.0.2 (inc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-1284 | The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an Improper Validation of Specified Quantity in Input issue found in the Ads by WPQuads plugin, specifically in the quick-adsense-reloaded component. It allows an attacker to manipulate hidden fields within the plugin.
How can this vulnerability impact me? :
The vulnerability has a CVSS base score of 6.5, indicating a medium severity. It can be exploited remotely without authentication and user interaction. The impact includes integrity and availability loss, meaning an attacker could manipulate data or disrupt the normal operation of the plugin.
Ask Our AI Assistant
Need more information? Ask your question to get an AI reply (Powered by our expertise)
0/70