Delete All Comments Project maintains a narrowly scoped browser extension designed to remove comment sections from web pages, with its vulnerability footprint centered on the core product and a recurring pattern of unrestricted file-upload handling. The durable signal reflects the extension's content-manipulation mechanism and the input-validation demands of processing user-supplied or third-party files. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Delete All Comments Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2016-15033CRITICAL The Delete All Comments plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the via the delete-all-comments.php file in versions up | Jun 7, 2023 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Delete All Comments Project.
Media articles that mention a CVE ID that affects a product developed by Delete All Comments Project — matched by CVE ID, not by vendor name.