The optional dashboard HTTP server (`atomic_agents/dashboard/serve.py`) builds filesystem paths directly from the request path and serves them without a containment check. It is the only per-request untrusted-path site in the codebase that does not route through `_io.safe_resolve_under`. Literal `../` segments survive `urlparse` and `Path` joining, so a request can read files outside the intended `agents_root` (including via the static branch). **Impact:** arbitrary file read. The default bind
Unauthenticated Broken Access Control in Anti Spam and list cleaner – AcyChecker <= 2.0.0 versions.
Customer Cross Site Scripting (XSS) in WpBookingly <= 1.3.2 versions.
Unauthenticated Broken Access Control in Contact Form 7 – PayPal & Stripe Add-on <= 2.5.1 versions.
Unauthenticated Cross Site Scripting (XSS) in MultiParcels Shipping For WooCommerce <= 1.30.36 versions.
Unauthenticated SQL Injection in Church Admin <= 5.1.1 versions.
Unauthenticated SQL Injection in Everest Backup <= 2.3.12 versions.
Subscriber Cross Site Scripting (XSS) in Accordion <= 3.0.6 versions.
Unauthenticated Broken Access Control in Arvow AI SEO Writer <= 1.5.3 versions.
Unauthenticated Cross Site Scripting (XSS) in Local Delivery Drivers for WooCommerce <= 3.0.0 versions.
Subscriber Cross Site Scripting (XSS) in FluentCommunity <= 2.7.5 versions.
Unauthenticated Broken Access Control in StoreGrowth: Smart Sales Booster for WooCommerce | BOGO, Upsells, Direct Checkout, Quick View, Side Cart <= 2.1.1 versions.
Unauthenticated Broken Access Control in Internal Link Optimiser <= 5.2.7 versions.
Unauthenticated Sensitive Data Exposure in iCARRY <= 2.9 versions.
Unauthenticated Broken Access Control in SMEPay: UPI Gateway for WooCommerce <= 1.0.5 versions.
Subscriber Cross Site Scripting (XSS) in AfterShip Tracking <= 1.18.1 versions.
Unauthenticated Broken Access Control in AI for SEO <= 2.4.2 versions.
Unauthenticated SQL Injection in RealPress <= 1.1.2 versions.
Subscriber Cross Site Scripting (XSS) in Profile Extra Fields by BestWebSoft <= 1.3.4 versions.
Subscriber Broken Access Control in ReactPress <= 3.4.0 versions.