4.8
CVE-2025-8550 - atjiu pybbs list cross site scripting
A vulnerability was found in atjiu pybbs up to 6.0.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/topic/list. The manipulation of the argument Username leads to cross site scripting. The attack can be launched remotely. The explโฆ
6.4
CVE-2025-8313 - Campus Directory <= 1.9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_mโฆ
The Campus Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the โnoaccess_msgโ parameter in all versions up to, and including, 1.9.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level โฆ
7.2
CVE-2025-7050 - Use-your-Drive | Google Drive plugin for WordPress <= 3.3.1- Unauthenticated Stored Cross-Site Scriโฆ
The Use-your-Drive | Google Drive plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter in file metadata in all versions up to, and including, 3.3.1 due to insufficient input sanitization and output escaping. This makes it possible for attaโฆ
6.4
CVE-2025-8315 - WP Easy Contact <= 4.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_msโฆ
The WP Easy Contact plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the โnoaccess_msgโ parameter in all versions up to, and including, 4.0.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level aโฆ
6.3
CVE-2025-8549 - atjiu pybbs UserAdminController.java update weak password
A vulnerability was found in atjiu pybbs up to 6.0.0. It has been classified as critical. Affected is the function update of the file src/main/java/co/yiiu/pybbs/controller/admin/UserAdminController.java. The manipulation leads to weak password requirements. It is possible to launch the attack remoโฆ
0.0
CVE-2025-55023 -
Not used
0.0
CVE-2025-55024 -
Not used
0.0
CVE-2025-55025 -
Not used
0.0
CVE-2025-55026 -
Not used
0.0
CVE-2025-55027 -
Not used