Watchtowerhq's vulnerability footprint centers on its core Watchtower product and is characterized by permission and access-control issues, including improper privilege management and configurations that expose files or directories to unintended external parties. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Watchtowerhq over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-25701CRITICAL Improper Privilege Management vulnerability in WhatArmy WatchTowerHQ allows Privilege Escalation.This issue affects WatchTowerHQ: from n/a through 3.6.16. | May 17, 2024 | 9.8 | 27 | NO | NO |
CVE-2022-44583HIGH Unauth. Arbitrary File Download vulnerability in WatchTowerHQ plugin <= 3.6.15 on WordPress. | Nov 18, 2022 | 7.5 | 24 | NO | NO |
CVE-2022-44584CRITICAL Unauth. Arbitrary File Deletion vulnerability in WatchTowerHQ plugin <= 3.6.15 on WordPress. | Nov 18, 2022 | 9.1 | 22 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Watchtowerhq.
Media articles that mention a CVE ID that affects a product developed by Watchtowerhq — matched by CVE ID, not by vendor name.