Faboba operates a focused product line centered on the Falang application, a web-facing platform where vulnerabilities tend to cluster in areas of input handling and access control. The recurring weakness classes—cross-site request forgery, SQL injection, and missing authorization—reflect common application-layer security gaps in web service design. Current severity, exploitation status, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Faboba over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-37968HIGH Cross-Site Request Forgery (CSRF) vulnerability in Faboba Falang multilanguage for WordPress plugin <= 1.3.39 versions. | Jul 17, 2023 | 8.8 | 24 | NO | NO |
CVE-2024-6869HIGH The Falang multilanguage for WordPress plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on several functions in all version | Aug 8, 2024 | 7.1 | 21 | NO | NO |
CVE-2024-30495HIGH Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Faboba Falang multilanguage.This issue affects Falang multilanguage: from n/a | Mar 29, 2024 | 7.2 | 19 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Faboba.
Media articles that mention a CVE ID that affects a product developed by Faboba — matched by CVE ID, not by vendor name.