← WordPress Vulnerabilities
WordPress security by component

HAPPY

HAPPY is a WordPress component with 6 published CVE records in this archive. The latest tracked vulnerability was published May 21, 2026; the highest CVE/CNA score is 10.

Plugin slug: happy-helpdesk-support-ticket-system

CVE-2026-39593: HAPPY: A security weakness

HAPPY is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is n/a through 1.0.10.

PublishedMay 21, 2026
Known safe version1.0.11
Safe version
May 21, 2026 CVE-2026-39593
HAPPY: A security weakness
HAPPY is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation. The published affected range is n/a through 1.0.10.
1.0.11
CVE6.5
NVDPending
Feb 20, 2026 CVE-2025-67977
HAPPY: A security weakness
HAPPY is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE8.2
NVDPending
Dec 23, 2025 CVE-2025-68556
HAPPY: A security weakness
HAPPY is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE5.3
NVDPending
Dec 13, 2025 CVE-2025-14581
HAPPY – Helpdesk Support Ticket System: A security weakness
HAPPY – Helpdesk Support Ticket System is affected by a security weakness. Exploitation requires at least subscriber-level access. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE4.3
NVDPending
Nov 06, 2025 CVE-2025-49372
HAPPY: Code execution
HAPPY is affected by code execution. Exposure depends on how the affected operation is made reachable by the site. Successful exploitation can run attacker-controlled code in the WordPress hosting account.
See mitigation notes
CVE10.0
NVDPending
Sep 05, 2025 CVE-2025-53571
HAPPY: A security weakness
HAPPY is affected by a security weakness. Exposure depends on how the affected operation is made reachable by the site. The resulting impact depends on how the affected component exposes the vulnerable operation.
See mitigation notes
CVE6.5
NVDPending