4.8

CVSS4.0

CVE-2025-8550 - atjiu pybbs list cross site scripting

A vulnerability was found in atjiu pybbs up to 6.0.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/topic/list. The manipulation of the argument Username leads to cross site scripting. The attack can be launched remotely. The explโ€ฆ

๐Ÿ“… Published: Aug. 5, 2025, 7:02 a.m. ๐Ÿ”„ Last Modified: Sept. 4, 2025, 3:37 p.m.

6.4

CVSS3.1

CVE-2025-8313 - Campus Directory <= 1.9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_mโ€ฆ

The Campus Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the โ€˜noaccess_msgโ€™ parameter in all versions up to, and including, 1.9.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level โ€ฆ

๐Ÿ“… Published: Aug. 5, 2025, 6:39 a.m. ๐Ÿ”„ Last Modified: April 20, 2026, 10:15 p.m.

7.2

CVSS3.1

CVE-2025-7050 - Use-your-Drive | Google Drive plugin for WordPress <= 3.3.1- Unauthenticated Stored Cross-Site Scriโ€ฆ

The Use-your-Drive | Google Drive plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter in file metadata in all versions up to, and including, 3.3.1 due to insufficient input sanitization and output escaping. This makes it possible for attaโ€ฆ

๐Ÿ“… Published: Aug. 5, 2025, 6:39 a.m. ๐Ÿ”„ Last Modified: April 20, 2026, 8:15 p.m.

6.4

CVSS3.1

CVE-2025-8315 - WP Easy Contact <= 4.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via noaccess_msโ€ฆ

The WP Easy Contact plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the โ€˜noaccess_msgโ€™ parameter in all versions up to, and including, 4.0.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level aโ€ฆ

๐Ÿ“… Published: Aug. 5, 2025, 6:39 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5:15 p.m.

6.3

CVSS4.0

CVE-2025-8549 - atjiu pybbs UserAdminController.java update weak password

A vulnerability was found in atjiu pybbs up to 6.0.0. It has been classified as critical. Affected is the function update of the file src/main/java/co/yiiu/pybbs/controller/admin/UserAdminController.java. The manipulation leads to weak password requirements. It is possible to launch the attack remoโ€ฆ

๐Ÿ“… Published: Aug. 5, 2025, 6:32 a.m. ๐Ÿ”„ Last Modified: Sept. 3, 2025, 1:10 p.m.

0.0

CVE-2025-55023 -

Not used

๐Ÿ“… Published: Aug. 5, 2025, 6:24 a.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 4:16 a.m.

0.0

CVE-2025-55024 -

Not used

๐Ÿ“… Published: Aug. 5, 2025, 6:24 a.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 4:16 a.m.

0.0

CVE-2025-55025 -

Not used

๐Ÿ“… Published: Aug. 5, 2025, 6:24 a.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 4:16 a.m.

0.0

CVE-2025-55026 -

Not used

๐Ÿ“… Published: Aug. 5, 2025, 6:24 a.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 4:16 a.m.

0.0

CVE-2025-55027 -

Not used

๐Ÿ“… Published: Aug. 5, 2025, 6:24 a.m. ๐Ÿ”„ Last Modified: Aug. 6, 2025, 4:16 a.m.
Total resulsts: 347240
Page 4216 of 34,724
ยซ previous page ยป next page
Filters