6.5

CVSS3.1

CVE-2025-60247 - WordPress Bux Woocommerce plugin <= 1.2.3 - Broken Access Control vulnerability

Missing Authorization vulnerability in Bux Bux Woocommerce bux-woocommerce allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Bux Woocommerce: from n/a through <= 1.2.3.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 7, 2025, 3:15 p.m.

0.0

CVE-2025-60245 - WordPress WP User Manager plugin <= 2.9.12 - PHP Object Injection vulnerability

Deserialization of Untrusted Data vulnerability in WP User Manager WP User Manager wp-user-manager allows Object Injection.This issue affects WP User Manager: from n/a through <= 2.9.12.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 6, 2025, 8:38 p.m.

0.0

CVE-2025-60244 - WordPress TableOn plugin <= 1.0.4.2 - Content Injection vulnerability

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in RealMag777 TableOn posts-table-filterable allows Code Injection.This issue affects TableOn: from n/a through <= 1.0.4.2.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 7, 2025, 10:54 a.m.

0.0

CVE-2025-60243 - WordPress Selling Commander for WooCommerce plugin <= 1.2.46 - Privilege Escalation vulnerability

Incorrect Privilege Assignment vulnerability in Holest Engineering Selling Commander for WooCommerce selling-commander-connector allows Privilege Escalation.This issue affects Selling Commander for WooCommerce: from n/a through <= 1.2.46.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 7, 2025, 10:54 a.m.

0.0

CVE-2025-60242 - WordPress Download Counter plugin <= 1.4 - Arbitrary File Download vulnerability

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Anatoly Download Counter download-counter allows Path Traversal.This issue affects Download Counter: from n/a through <= 1.4.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 7, 2025, 10:54 a.m.

7.5

CVSS3.1

CVE-2025-60241 - WordPress Premmerce plugin <= 1.3.19 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Premmerce Premmerce premmerce allows PHP Local File Inclusion.This issue affects Premmerce: from n/a through <= 1.3.19.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 7, 2025, 3:15 p.m.

7.5

CVSS3.1

CVE-2025-60240 - WordPress AnyComment plugin <= 0.3.6 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Alexander AnyComment anycomment allows PHP Local File Inclusion.This issue affects AnyComment: from n/a through <= 0.3.6.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 7, 2025, 3:15 p.m.

8.5

CVSS3.1

CVE-2025-60239 - WordPress CoSchool LMS plugin <= 1.4.3 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Codexpert, Inc CoSchool LMS coschool allows Blind SQL Injection.This issue affects CoSchool LMS: from n/a through <= 1.4.3.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 7, 2025, 3:15 p.m.

0.0

CVE-2025-60235 - WordPress Helpdesk Support Ticket System for WooCommerce plugin <= 2.1.0 - Arbitrary File Upload vuโ€ฆ

Unrestricted Upload of File with Dangerous Type vulnerability in Plugify Helpdesk Support Ticket System for WooCommerce support-ticket-system-for-woocommerce allows Using Malicious Files.This issue affects Helpdesk Support Ticket System for WooCommerce: from n/a through <= 2.1.0.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 6, 2025, 8:38 p.m.

0.0

CVE-2025-60207 - WordPress Custom User Registration Fields for WooCommerce plugin <= 2.1.2 - Arbitrary File Upload Vโ€ฆ

Unrestricted Upload of File with Dangerous Type vulnerability in Addify Custom User Registration Fields for WooCommerce user-registration-plugin-for-woocommerce allows Upload a Web Shell to a Web Server.This issue affects Custom User Registration Fields for WooCommerce: from n/a through <= 2.1.2.

๐Ÿ“… Published: Nov. 6, 2025, 3:55 p.m. ๐Ÿ”„ Last Modified: Nov. 6, 2025, 8:38 p.m.
Total resulsts: 317435
Page 28 of 31,744
ยซ previous page ยป next page
Filters