Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 233 234 235 236 237 238 239 240 241 242 [243] 244 245 246 247 248 249 250 251 252 253 ... Result(s) : 324546

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
6.4 2025-05-15 CVE-2025-4589 cve The Bon Toolkit plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'bt-map' shortcode in all versions up to, and including, 1.3.2 ...
7.2 2025-05-15 CVE-2025-4579 cve The WP Content Security Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blocked-uri and effective-directive parameters in all versions up to, a...
9.8 2025-05-15 CVE-2025-4564 cve The TicketBAI Facturas para WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation via the 'delpdf' action ...
N/A 2025-05-15 CVE-2025-44183 cve Phpgurukul Vehicle Record Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in /admin/profile.php via the name, email, and mobile parameters.
N/A 2025-05-15 CVE-2025-44182 cve Phpgurukul Vehicle Record Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the vehiclename, modelnumber, regnumber, vehiclesubtype, chasisnum, enginenumber...
N/A 2025-05-15 CVE-2025-44181 cve Phpgurukul Vehicle Record Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in /admin/add-brand.php via the brandname parameter.
N/A 2025-05-15 CVE-2025-44180 cve Phpgurukul Vehicle Record Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in /edit-brand.php?bid={brandId}.
N/A 2025-05-15 CVE-2025-44110 cve FluxBB 1.5.11 is vulnerable to Cross Site Scripting (XSS) in via the Forum Description Field in admin_forums.php.
N/A 2025-05-15 CVE-2025-43853 cve The WebAssembly Micro Runtime's (WAMR) iwasm package is the executable binary built with WAMR VMcore which supports WebAssembly System Interface (WASI) and command line int...
N/A 2025-05-15 CVE-2025-4209 cve Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
6.4 2025-05-15 CVE-2025-4126 cve The EG-Series plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's [series] shortcode in all versions up to, and including, 2.1.1 due to insuf...
9.8 2025-05-15 CVE-2025-3917 cve The ????SEO??(????/??/Bing/????) plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the download_remote_image_to_media_library f...
N/A 2025-05-15 CVE-2025-3742 cve The Responsive Lightbox & Gallery WordPress plugin before 2.5.1 does not validate and escape some of its attributes before outputting them back in a page/post, which could allow...
N/A 2025-05-15 CVE-2025-3446 cve Mattermost versions 10.6.x
5.5 2025-05-15 CVE-2025-3440 cve IBM Security Guardium 11.5 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus alteri...
N/A 2025-05-15 CVE-2025-32922 cve Cross-Site Request Forgery (CSRF) vulnerability in Tobias WP2LEADS allows Stored XSS.This issue affects WP2LEADS: from n/a through 3.5.0.
N/A 2025-05-15 CVE-2025-32738 cve Missing authentication for critical function issue exists in I-O DATA network attached hard disk 'HDL-T Series' firmware Ver.1.21 and earlier. If exploited, a remote u...
N/A 2025-05-15 CVE-2025-32002 cve Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in I-O DATA network attached hard disk 'HDL-T Series'...
N/A 2025-05-15 CVE-2025-31947 cve Mattermost versions 10.6.x
8.8 2025-05-15 CVE-2025-3053 cve The UiPress lite | Effortless custom dashboards, admin themes and pages plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 3.5.07 ...
Page(s) : 1 ... 233 234 235 236 237 238 239 240 241 242 [243] 244 245 246 247 248 249 250 251 252 253 ... Result(s) : 324546