Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 927 928 929 930 931 932 933 934 935 936 [937] 938 939 940 941 942 943 944 945 946 947 ... Result(s) : 300506

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
7.5 2025-02-19 CVE-2024-13491 cve The Small Package Quotes – For Customers of FedEx plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in ...
7.5 2025-02-19 CVE-2024-13533 cve The Small Package Quotes – USPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 1.3.5 due...
7.5 2025-02-19 CVE-2024-13534 cve The Small Package Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters ...
6.1 2025-02-19 CVE-2025-0916 cve The YaySMTP and Email Logs: Amazon SES, SendGrid, Outlook, Mailgun, Brevo, Google and Any SMTP Service plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versi...
5.3 2025-02-19 CVE-2025-0968 cve The ElementsKit Elementor addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.4.0 due to a missing capability ch...
7.3 2025-02-19 CVE-2025-1464 cve A vulnerability, which was classified as critical, has been found in Baiyi Cloud Asset Management System up to 20250204. This issue affects some unknown processing of the file /...
N/A 2025-02-19 CVE-2024-12173 cve The Master Slider WordPress plugin before 3.10.5 does not sanitise and escape some of its settings, which could allow high privilege users such as Editor and above to perform S...
6.4 2025-02-19 CVE-2024-13799 cve The User Private Files – File Upload & Download Manager with Secure File Sharing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘new-fldr-name’ parame...
6.4 2025-02-19 CVE-2025-1065 cve The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Import Data From File feature in ...
N/A 2025-02-19 CVE-2025-22888 cve Movable Type contains a stored cross-site scripting vulnerability in the custom block edit page of MT Block Editor. If exploited, an arbitrary script may be executed on a logged...
N/A 2025-02-19 CVE-2025-24841 cve Movable Type contains a stored cross-site scripting vulnerability in the HTML edit mode of MT Block Editor. It is exploitable when TinyMCE6 is used as a rich text editor and an ...
N/A 2025-02-19 CVE-2025-25054 cve Movable Type contains a reflected cross-site scripting vulnerability in the user information edit page. When Multi-Factor authentication plugin is enabled and a user accesses a ...
N/A 2025-02-19 CVE-2025-0633 cve Heap-based Buffer Overflow vulnerability in iniparser_dumpsection_ini() in iniparser allows attacker to read out of bound memory
6.4 2025-02-19 CVE-2024-11335 cve The UltraEmbed – Advanced Iframe Plugin For WordPress with Gutenberg Block Included plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's '...
6.4 2025-02-19 CVE-2024-11753 cve The UMich OIDC Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'umich_oidc_button' shortcode in all versions up to, and i...
6.4 2025-02-19 CVE-2024-11778 cve The CanadaHelps Embedded Donation Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'embedcdn' shortcode in all versions up ...
6.1 2025-02-19 CVE-2024-12069 cve The Lexicata plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, ...
6.1 2025-02-19 CVE-2024-12339 cve The Digihood HTML Sitemap plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘channel' parameter in all versions up to, and including, 3.1.1 due t...
6.4 2025-02-19 CVE-2024-12522 cve The Yay! Forms | Embed Custom Forms, Surveys, and Quizzes Easily plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'yayforms' sho...
6.4 2025-02-19 CVE-2024-13390 cve The ADFO – Custom data in admin dashboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'adfo_list' shortcode in all versions...
Page(s) : 1 ... 927 928 929 930 931 932 933 934 935 936 [937] 938 939 940 941 942 943 944 945 946 947 ... Result(s) : 300506