Page(s) : 1 ... 795 796 797 798 799 800 801 802 803 804 [805] 806 807 808 809 810 811 812 813 814 815 ... | Result(s) : 300249 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
6.4 | 2025-03-05 | CVE-2024-13866 | cve | The Simple Notification plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 1.3 due to insufficient input sanitization and ou... |
5.3 | 2025-03-05 | CVE-2024-8682 | cve | The JNews - WordPress Newspaper Magazine Blog AMP Theme theme for WordPress is vulnerable to unauthorized user registration in all versions up to, and including, 11.6.6. This is... |
4.3 | 2025-03-05 | CVE-2025-0990 | cve | The I Am Gloria plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.4. This is due to missing or incorrect nonce validatio... |
6.4 | 2025-03-05 | CVE-2025-1008 | cve | The Recently Purchased Products For Woo plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘view’ parameter in all versions up to, and including, 1.1.3 du... |
6.3 | 2025-03-05 | CVE-2025-1435 | cve | The bbPress plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.6.11. This is due to missing or incorrect nonce validation o... |
N/A | 2025-03-05 | CVE-2025-22493 | cve | Secure flag not set and SameSIte was set to Lax in the Foreseer Reporting Software (FRS). Absence of this secure flag could lead into the session cookie being transmitted over u... |
5.4 | 2025-03-05 | CVE-2024-11731 | cve | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ms_slider shortcode in all versions up to, an... |
6.4 | 2025-03-05 | CVE-2024-12815 | cve | The Point Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'point_maker' shortcode in all versions up to, and including, 0... |
8.8 | 2025-03-05 | CVE-2024-13232 | cve | The WordPress Awesome Import & Export Plugin - Import & Export WordPress Data plugin for WordPress is vulnerable arbitrary SQL Execution and privilege escalation due to a missin... |
4.3 | 2025-03-05 | CVE-2024-13747 | cve | The WooMail - WooCommerce Email Customizer plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the 'template_delete_saved... |
5.4 | 2025-03-05 | CVE-2024-13757 | cve | The Master Slider – Responsive Touch Slider plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's ms_layer shortcode in all versions up to, and... |
9.8 | 2025-03-05 | CVE-2024-13777 | cve | The ZoomSounds - WordPress Wave Audio Player with Playlist plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 6.91 via deserializat... |
6.5 | 2025-03-05 | CVE-2024-13778 | cve | The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to SQL Injection via several functions in all versions up to, and including, 1.16.5 due ... |
6.1 | 2025-03-05 | CVE-2024-13779 | cve | The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'index' parameter in all versions up... |
6.5 | 2025-03-05 | CVE-2024-13780 | cve | The Hero Mega Menu - Responsive WordPress Menu Plugin plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the hmenu_delete_... |
9.8 | 2025-03-05 | CVE-2024-13787 | cve | The VEDA - MultiPurpose WordPress Theme theme for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 4.2 via deserialization of untrusted inpu... |
6.5 | 2025-03-05 | CVE-2024-13809 | cve | The Hero Slider - WordPress Slider Plugin plugin for WordPress is vulnerable to SQL Injection via several parameters in all versions up to, and including, 1.3.5 due to insuffici... |
4.3 | 2025-03-05 | CVE-2024-13810 | cve | The Zass - WooCommerce Theme for Handmade Artists and Artisans theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'zass_impor... |
4.3 | 2025-03-05 | CVE-2024-13811 | cve | The Lafka - Multi Store Burger - Pizza & Food Delivery WooCommerce Theme theme for WordPress is vulnerable to unauthorized access due to a missing capability check on the '... |
6.5 | 2025-03-05 | CVE-2024-13815 | cve | The The Listingo theme for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.2.7. This is due to the software allowing users to ex... |
Page(s) : 1 ... 795 796 797 798 799 800 801 802 803 804 [805] 806 807 808 809 810 811 812 813 814 815 ... | Result(s) : 300249 |