6.5

CVSS3.1

CVE-2025-57911 - WordPress Adverts Plugin <= 1.4 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPFactory Adverts adverts-click-tracker allows DOM-Based XSS.This issue affects Adverts: from n/a through <= 1.4.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

5.9

CVSS3.1

CVE-2025-57912 - WordPress Dialogity Free Live Chat plugin <= 1.0.3 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dialogity Dialogity Free Live Chat dialogity-website-chat allows Stored XSS.This issue affects Dialogity Free Live Chat: from n/a through <= 1.0.3.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

6.5

CVSS3.1

CVE-2025-57913 - WordPress Behance Portfolio Manager plugin <= 1.7.5 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in eleopard Behance Portfolio Manager portfolio-manager-powered-by-behance allows Stored XSS.This issue affects Behance Portfolio Manager: from n/a through <= 1.7.5.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

4.3

CVSS3.1

CVE-2025-57914 - WordPress Deliver via Shipos for WooCommerce plugin <= 3.0.2 - Cross Site Request Forgery (CSRF) vu…

Cross-Site Request Forgery (CSRF) vulnerability in Matat Technologies Deliver via Shipos for WooCommerce wc-shipos-delivery allows Cross Site Request Forgery.This issue affects Deliver via Shipos for WooCommerce: from n/a through <= 3.0.2.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

4.3

CVSS3.1

CVE-2025-57915 - WordPress TOCHAT.BE Plugin <= 1.3.4 - Cross Site Request Forgery (CSRF) Vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in CΓ©sar MartΓ­n TOCHAT.BE tochat-be allows Cross Site Request Forgery.This issue affects TOCHAT.BE: from n/a through <= 1.3.4.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

4.3

CVSS3.1

CVE-2025-57916 - WordPress WP System Information Plugin <= 1.5 - Sensitive Data Exposure Vulnerability

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Nurul Amin WP System Information wp-system-info allows Retrieve Embedded Sensitive Data.This issue affects WP System Information: from n/a through <= 1.5.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

4.3

CVSS3.1

CVE-2025-57917 - WordPress Printcart Web to Print Product Designer for WooCommerce plugin <= 2.4.8 - Broken Access C…

Missing Authorization vulnerability in printcart Printcart Web to Print Product Designer for WooCommerce printcart-integration allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Printcart Web to Print Product Designer for WooCommerce: from n/a through <= 2.4.…

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

7.1

CVSS3.1

CVE-2025-57918 - WordPress LinkedInclude Plugin <= 3.0.4 - Cross Site Request Forgery (CSRF) Vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in ERA404 LinkedInclude linkedinclude allows Stored XSS.This issue affects LinkedInclude: from n/a through <= 3.0.4.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

7.2

CVSS3.1

CVE-2025-57919 - WordPress ConveyThis plugin <= 269.1 - PHP Object Injection vulnerability

Deserialization of Untrusted Data vulnerability in ConveyThis ConveyThis conveythis-translate allows Object Injection.This issue affects ConveyThis: from n/a through <= 269.1.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.

5.9

CVSS3.1

CVE-2025-57920 - WordPress Category Featured Images Extended Plugin <= 1.52 - Cross Site Scripting (XSS) Vulnerabili…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CK MacLeod Category Featured Images Extended category-featured-images-extended allows Stored XSS.This issue affects Category Featured Images Extended: from n/a through <= 1.52.

πŸ“… Published: Sept. 22, 2025, 6:25 p.m. πŸ”„ Last Modified: April 23, 2026, 3:33 p.m.
Total resulsts: 349182
Page 3727 of 34,919
Β« previous page Β» next page
Filters