7.1

CVSS3.1

CVE-2025-53205 - WordPress Radio Player Shoutcast & Icecast <= 4.4.7 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LambertGroup Radio Player Shoutcast & Icecast lbg-audio4-html5-shoutcast allows Reflected XSS.This issue affects Radio Player Shoutcast & Icecast: from n/a through <= 4.4.7.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

8.1

CVSS3.1

CVE-2025-53207 - WordPress WP Travel Gutenberg Blocks plugin <= 3.9.0 - Local File Inclusion Vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in WP Travel WP Travel Gutenberg Blocks wp-travel-blocks allows PHP Local File Inclusion.This issue affects WP Travel Gutenberg Blocks: from n/a through <= 3.9.0.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

7.5

CVSS3.1

CVE-2025-53208 - WordPress Maya Business <= 1.2.0 - Insecure Direct Object References (IDOR) Vulnerability

Authorization Bypass Through User-Controlled Key vulnerability in paymayapg Maya Business paymaya-checkout-for-woocommerce allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Maya Business: from n/a through <= 1.2.0.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

7.5

CVSS3.1

CVE-2025-53210 - WordPress ZoloBlocks Plugin <= 2.3.2 - Local File Inclusion Vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in bdthemes ZoloBlocks zoloblocks allows PHP Local File Inclusion.This issue affects ZoloBlocks: from n/a through <= 2.3.2.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

7.1

CVSS3.1

CVE-2025-53212 - WordPress Revolution Video Player With Bottom Playlist <= 2.9.2 - Cross Site Scripting (XSS) Vulner…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LambertGroup Revolution Video Player With Bottom Playlist revolution-video-player allows Reflected XSS.This issue affects Revolution Video Player With Bottom Playlist: from n/a through <= 2.9.2.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

9.9

CVSS3.1

CVE-2025-53213 - WordPress ReachShip WooCommerce Multi-Carrier & Conditional Shipping <= 4.3.1 - Arbitrary File Uplo…

Unrestricted Upload of File with Dangerous Type vulnerability in ELEXtensions ReachShip WooCommerce Multi-Carrier & Conditional Shipping elex-reachship-multi-carrier-conditional-shipping allows Using Malicious Files.This issue affects ReachShip WooCommerce Multi-Carrier & Conditional Shipping: from…

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

7.1

CVSS3.1

CVE-2025-53226 - WordPress Comments Capcha Box Plugin <= 1.1 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in digitalzoomstudio Comments Capcha Box comments-capcha-box allows Reflected XSS.This issue affects Comments Capcha Box: from n/a through <= 1.1.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

9.8

CVSS3.1

CVE-2025-53299 - WordPress ThemeMakers Visual Content Composer Plugin <= 1.5.8 - PHP Object Injection Vulnerability

Deserialization of Untrusted Data vulnerability in ThemeMakers ThemeMakers Visual Content Composer tmm_content_composer allows Object Injection.This issue affects ThemeMakers Visual Content Composer: from n/a through <= 1.5.8.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.

7.1

CVSS3.1

CVE-2025-53319 - WordPress Raptive Ads Plugin <= 3.8.0 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Raptive Raptive Ads adthrive-ads allows Reflected XSS.This issue affects Raptive Ads: from n/a through <= 3.8.0.

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 29, 2026, 9:51 a.m.

7.1

CVSS3.1

CVE-2025-53559 - WordPress Universal Video Player - Addon for WPBakery Page Builder <= 3.2.1 - Cross Site Scripting …

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LambertGroup Universal Video Player - Addon for WPBakery Page Builder lbg-universal-video-player-addon-visual-composer allows Reflected XSS.This issue affects Universal Video Player - Addon for WPB…

πŸ“… Published: Aug. 20, 2025, 8:03 a.m. πŸ”„ Last Modified: April 23, 2026, 3:32 p.m.
Total resulsts: 349182
Page 4209 of 34,919
Β« previous page Β» next page
Filters