7.6

CVSS3.1

CVE-2025-58789 - WordPress WP Full Stripe Free Plugin <= 8.3.0 - SQL Injection Vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeisle WP Full Stripe Free allows SQL Injection. This issue affects WP Full Stripe Free: from n/a through 8.3.0.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

7.6

CVSS3.1

CVE-2025-58788 - WordPress License Manager for WooCommerce Plugin <= 3.0.12 - SQL Injection Vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal License Manager for WooCommerce allows Blind SQL Injection. This issue affects License Manager for WooCommerce: from n/a through 3.0.12.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

6.5

CVSS3.1

CVE-2025-58787 - WordPress Themify Popup Plugin <= 1.4.4 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themifyme Themify Popup allows Stored XSS. This issue affects Themify Popup: from n/a through 1.4.4.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

6.5

CVSS3.1

CVE-2025-58786 - WordPress Ibtana – Ecommerce Product Addons Plugin <= 0.4.7.4 - Cross Site Scripting (XSS) Vulnerab…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VW THEMES Ibtana – Ecommerce Product Addons allows DOM-Based XSS. This issue affects Ibtana – Ecommerce Product Addons: from n/a through 0.4.7.4.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

5.4

CVSS3.1

CVE-2025-58785 - WordPress Ray Enterprise Translation Plugin <= 1.7.1 - Broken Access Control Vulnerability

Missing Authorization vulnerability in jbhovik Ray Enterprise Translation allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Ray Enterprise Translation: from n/a through 1.7.1.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

6.5

CVSS3.1

CVE-2025-58784 - WordPress ARI Fancy Lightbox Plugin <= 1.4.0 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in arisoft ARI Fancy Lightbox allows Stored XSS. This issue affects ARI Fancy Lightbox: from n/a through 1.4.0.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

4.3

CVSS3.1

CVE-2025-58783 - WordPress Gutentor Plugin <= 3.5.1 - Broken Access Control Vulnerability

Missing Authorization vulnerability in gutentor Gutentor allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Gutentor: from n/a through 3.5.1.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

5.4

CVSS3.1

CVE-2025-8695 - Reflected XSS in Netcad Software's NetGIS Server

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Netcad NetGIS Server allows Reflected XSS.This issue affects NetGIS Server: from 5.2.4 through 22.08.2025.

πŸ“… Published: Sept. 5, 2025, 1:44 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:44 p.m.

3.2

CVSS3.1

CVE-2024-21977 -

Incomplete cleanup after loading a CPU microcode patch may allow a privileged attacker to degrade the entropy of the RDRAND instruction, potentially resulting in loss of integrity for SEV-SNP guests.

πŸ“… Published: Sept. 5, 2025, 12:58 p.m. πŸ”„ Last Modified: Sept. 5, 2025, 1:35 p.m.

0.0

CVE-2025-58911 -

Not used

πŸ“… Published: Sept. 5, 2025, 11 a.m. πŸ”„ Last Modified: Sept. 6, 2025, 2:55 a.m.
Total resulsts: 309800
Page 145 of 30,980
Β« previous page Β» next page
Filters