VulnSea

expresstech has 3 CVEs on record. The busiest recent month was January 2026 with 3. The median CVSS is 6.5 (medium).

CVEs per month

Last 12 months, by publish date

111201020304050607080910
Exploited share
0% vs 1% corpus
Median CVSS
6.5
Publish → KEV
—
Last 90 days
0 prev 0

Products

  • quiz_and_survey_master 3
3
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

expresstech vulnerabilities

CVEs affecting expresstech, newest first. Open any entry for full detail, references, and exploit status.

3 CVEsRSS

CVE-2025-9637Medium· 6.5
8mo ago

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability and status checks on multiple functions in all versions up to, a…

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability and status checks on multiple functions in all versions up to, a…

▾ Sunlitexpresstech · quiz_and_survey_masterEPSS 0.26%via NVD
CVE-2025-9318Medium· 6.5
8mo ago

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to time-based SQL Injection via the ‘is_linking’ parameter in all versions up to, and including, 10.3.1 due to insufficient escaping on the …

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to time-based SQL Injection via the ‘is_linking’ parameter in all versions up to, and including, 10.3.1 due to insufficient escaping on the …

▾ Sunlitexpresstech · quiz_and_survey_masterEPSS 0.25%via NVD
CVE-2025-9294Medium· 4.3
8mo ago

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the qsm_dashboard_delete_result function in all versions up to, and includ…

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the qsm_dashboard_delete_result function in all versions up to, and includ…

▾ Sunlitexpresstech · quiz_and_survey_masterEPSS 0.22%via NVD
expresstech vulnerabilities (CVEs) · VulnSea