Page(s) : 1 ... 927 928 929 930 931 932 933 934 935 936 [937] 938 939 940 941 942 943 944 945 946 947 ... | Result(s) : 300506 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
7.5 | 2025-02-19 | CVE-2024-13491 | cve | The Small Package Quotes – For Customers of FedEx plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in ... |
7.5 | 2025-02-19 | CVE-2024-13533 | cve | The Small Package Quotes – USPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 1.3.5 due... |
7.5 | 2025-02-19 | CVE-2024-13534 | cve | The Small Package Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters ... |
6.1 | 2025-02-19 | CVE-2025-0916 | cve | The YaySMTP and Email Logs: Amazon SES, SendGrid, Outlook, Mailgun, Brevo, Google and Any SMTP Service plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versi... |
5.3 | 2025-02-19 | CVE-2025-0968 | cve | The ElementsKit Elementor addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.4.0 due to a missing capability ch... |
7.3 | 2025-02-19 | CVE-2025-1464 | cve | A vulnerability, which was classified as critical, has been found in Baiyi Cloud Asset Management System up to 20250204. This issue affects some unknown processing of the file /... |
N/A | 2025-02-19 | CVE-2024-12173 | cve | The Master Slider WordPress plugin before 3.10.5 does not sanitise and escape some of its settings, which could allow high privilege users such as Editor and above to perform S... |
6.4 | 2025-02-19 | CVE-2024-13799 | cve | The User Private Files – File Upload & Download Manager with Secure File Sharing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘new-fldr-name’ parame... |
6.4 | 2025-02-19 | CVE-2025-1065 | cve | The Visualizer: Tables and Charts Manager for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Import Data From File feature in ... |
N/A | 2025-02-19 | CVE-2025-22888 | cve | Movable Type contains a stored cross-site scripting vulnerability in the custom block edit page of MT Block Editor. If exploited, an arbitrary script may be executed on a logged... |
N/A | 2025-02-19 | CVE-2025-24841 | cve | Movable Type contains a stored cross-site scripting vulnerability in the HTML edit mode of MT Block Editor. It is exploitable when TinyMCE6 is used as a rich text editor and an ... |
N/A | 2025-02-19 | CVE-2025-25054 | cve | Movable Type contains a reflected cross-site scripting vulnerability in the user information edit page. When Multi-Factor authentication plugin is enabled and a user accesses a ... |
N/A | 2025-02-19 | CVE-2025-0633 | cve | Heap-based Buffer Overflow vulnerability in iniparser_dumpsection_ini() in iniparser allows attacker to read out of bound memory |
6.4 | 2025-02-19 | CVE-2024-11335 | cve | The UltraEmbed – Advanced Iframe Plugin For WordPress with Gutenberg Block Included plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's '... |
6.4 | 2025-02-19 | CVE-2024-11753 | cve | The UMich OIDC Login plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'umich_oidc_button' shortcode in all versions up to, and i... |
6.4 | 2025-02-19 | CVE-2024-11778 | cve | The CanadaHelps Embedded Donation Form plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'embedcdn' shortcode in all versions up ... |
6.1 | 2025-02-19 | CVE-2024-12069 | cve | The Lexicata plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, ... |
6.1 | 2025-02-19 | CVE-2024-12339 | cve | The Digihood HTML Sitemap plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘channel' parameter in all versions up to, and including, 3.1.1 due t... |
6.4 | 2025-02-19 | CVE-2024-12522 | cve | The Yay! Forms | Embed Custom Forms, Surveys, and Quizzes Easily plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'yayforms' sho... |
6.4 | 2025-02-19 | CVE-2024-13390 | cve | The ADFO – Custom data in admin dashboard plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'adfo_list' shortcode in all versions... |
Page(s) : 1 ... 927 928 929 930 931 932 933 934 935 936 [937] 938 939 940 941 942 943 944 945 946 947 ... | Result(s) : 300506 |