Kreci operates a narrowly scoped product portfolio centered on the Subscribers Text Counter utility, with observed vulnerability patterns rooted in cross-site request forgery weaknesses. The vendor's exposure reflects typical application-layer design challenges around request validation rather than a systemic or broad-portfolio risk. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Kreci over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-3356MEDIUM The Subscribers Text Counter WordPress plugin before 1.7.1 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin chang | Aug 30, 2023 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Kreci.
Media articles that mention a CVE ID that affects a product developed by Kreci — matched by CVE ID, not by vendor name.