0.0
CVE-2025-53875 -
Not used
0.0
CVE-2025-53871 -
Not used
0.0
CVE-2025-53874 -
Not used
0.0
CVE-2025-53876 -
Not used
7.5
CVE-2025-7442 - WPGYM - Wordpress Gym Management System < 67.8.0 - Unauthenticated SQL Injection
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to SQL Injection via several parameters in the MJ_gmgt_delete_class_limit_for_member, MJ_gmgt_get_yearly_income_expense, MJ_gmgt_get_monthly_income_expense, MJ_gmgt_add_class_limit, MJ_gmgt_view_meeting_detail, and MJ_gmβ¦
6.4
CVE-2025-6068 - FooGallery β Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel <= 2.4.31 - Authβ¦
The FooGallery β Responsive Photo Gallery, Image Viewer, Justified, Masonry & Carousel plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the `data-caption-title` & `data-caption-description` HTML attributes in all versions up to, and including, 2.4.31 due to insufficient input sβ¦
6.4
CVE-2025-5530 - WPC Smart Compare for WooCommerce <= 6.4.6 - Authenticated (Contributor+) Stored Cross-Site Scriptiβ¦
The WPC Smart Compare for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'shortcode_btn' shortcode in all versions up to, and including, 6.4.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possibβ¦
5.3
CVE-2025-6745 - WoodMart <= 8.2.5 - Unauthenticated Post Disclosure
The WoodMart plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 8.2.5 via the woodmart_get_posts_by_query() function due to insufficient restrictions on which posts can be included. This makes it possible for unauthenticated attackers to extract data frβ¦
6.5
CVE-2025-4593 - WP Register Profile With Shortcode <= 3.6.2 - Authenticated (Contributor+) Sensitive Information Exβ¦
The WP Register Profile With Shortcode plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.6.2 via the 'rp_user_data' shortcode. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitiveβ¦
2.3
CVE-2025-5992 - Passing values outside of expected range to QColorTransferGenericFunction can cause a denial of serβ¦
When passing values outside of the expected range to QColorTransferGenericFunction it can cause a denial of service, for example, this can happen when passing a specifically crafted ICC profile to QColorSpace::fromICCProfile.This issue affects Qt from 6.6.0 through 6.8.3, from 6.9.0 through 6.9.1. β¦