6.5

CVSS3.1

CVE-2025-68528 - WordPress Free Shipping Bar: Amount Left for Free Shipping for WooCommerce plugin <= 2.4.9 - Cross …

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFactory Free Shipping Bar: Amount Left for Free Shipping for WooCommerce amount-left-free-shipping-woocommerce allows Stored XSS.This issue affects Free Shipping Bar: Amount Left for Free Shippin…

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:58 p.m.

6.5

CVSS3.1

CVE-2025-68527 - WordPress Academy LMS plugin <= 3.4.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kodezen LLC Academy LMS academy allows Stored XSS.This issue affects Academy LMS: from n/a through <= 3.4.0.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:58 p.m.

5.9

CVSS3.1

CVE-2025-68525 - WordPress Category Icon plugin <= 1.0.2 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in pixelgrade Category Icon category-icon allows Stored XSS.This issue affects Category Icon: from n/a through <= 1.0.2.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.

4.3

CVSS3.1

CVE-2025-68523 - WordPress Spiffy Calendar plugin <= 5.0.7 - Broken Access Control vulnerability

Missing Authorization vulnerability in Spiffy Plugins Spiffy Calendar spiffy-calendar allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Spiffy Calendar: from n/a through <= 5.0.7.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.

4.3

CVSS3.1

CVE-2025-68522 - WordPress WpStream plugin <= 4.9.5 - Broken Access Control vulnerability

Missing Authorization vulnerability in wpstream WpStream wpstream allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WpStream: from n/a through <= 4.9.5.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.

5.3

CVSS3.1

CVE-2025-68521 - WordPress WpStream plugin <= 4.9.5 - Broken Access Control vulnerability

Missing Authorization vulnerability in wpstream WpStream wpstream allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WpStream: from n/a through <= 4.9.5.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.

8.5

CVSS3.1

CVE-2025-68519 - WordPress Brands for WooCommerce plugin <= 3.8.6.3 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BeRocket Brands for WooCommerce brands-for-woocommerce allows Blind SQL Injection.This issue affects Brands for WooCommerce: from n/a through <= 3.8.6.3.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.

5.4

CVSS3.1

CVE-2025-68517 - WordPress Tablesome plugin <= 1.1.35.1 - Broken Access Control vulnerability

Missing Authorization vulnerability in Essekia Tablesome tablesome allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Tablesome: from n/a through <= 1.1.35.1.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.

5

CVSS3.1

CVE-2025-68516 - WordPress Tablesome plugin <= 1.1.35.1 - Sensitive Data Exposure vulnerability

Insertion of Sensitive Information Into Sent Data vulnerability in Essekia Tablesome tablesome allows Retrieve Embedded Sensitive Data.This issue affects Tablesome: from n/a through <= 1.1.35.1.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.

6.5

CVSS3.1

CVE-2025-68513 - WordPress Bold Timeline Lite plugin <= 1.2.7 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Timeline Lite bold-timeline-lite allows Stored XSS.This issue affects Bold Timeline Lite: from n/a through <= 1.2.7.

πŸ“… Published: Dec. 24, 2025, 12:31 p.m. πŸ”„ Last Modified: April 24, 2026, 6:59 p.m.
Total resulsts: 346710
Page 2175 of 34,671
Β« previous page Β» next page
Filters