5.9

CVSS3.1

CVE-2025-47518 - WordPress Contact Form 7 – PayPal & Stripe Add-on plugin <= 2.3.4 - Cross Site Scripting (XSS) Vuln…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Paterson Contact Form 7 – PayPal & Stripe Add-on contact-form-7-paypal-add-on allows Stored XSS.This issue affects Contact Form 7 – PayPal & Stripe Add-on: from n/a through <= 2.3.4.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

7.1

CVSS3.1

CVE-2025-47517 - WordPress Accept Donations with PayPal plugin <= 1.4.5 - CSRF to Stored XSS vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in Scott Paterson Accept Donations with PayPal & Stripe easy-paypal-donation allows Stored XSS.This issue affects Accept Donations with PayPal & Stripe: from n/a through <= 1.4.5.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

5.9

CVSS3.1

CVE-2025-47516 - WordPress Time Clock plugin <= 1.2.3 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Paterson Time Clock time-clock allows Stored XSS.This issue affects Time Clock: from n/a through <= 1.2.3.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

6.5

CVSS3.1

CVE-2025-47515 - WordPress WP DPE-GES plugin <= 1.6 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Seb WP DPE-GES wp-dpe-ges allows DOM-Based XSS.This issue affects WP DPE-GES: from n/a through <= 1.6.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

7.1

CVSS3.1

CVE-2025-47514 - WordPress ELI's Related Posts Footer Links and Widget plugin <= 1.2.04.20 - Cross Site Request Forg…

Cross-Site Request Forgery (CSRF) vulnerability in Eli ELI's Related Posts Footer Links and Widget spostarbust allows Stored XSS.This issue affects ELI's Related Posts Footer Links and Widget: from n/a through <= 1.2.04.20.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

7.5

CVSS3.1

CVE-2025-47510 - WordPress Display Eventbrite Events plugin < 6.3 - Local File Inclusion Vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in fullworks Display Eventbrite Events widget-for-eventbrite-api allows PHP Local File Inclusion.This issue affects Display Eventbrite Events: from n/a through < 6.3.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

6.5

CVSS3.1

CVE-2025-47509 - WordPress Top 10 plugin <= 4.1.0 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Top 10 top-10 allows Stored XSS.This issue affects Top 10: from n/a through <= 4.1.0.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

7.5

CVSS3.1

CVE-2025-47508 - WordPress GamiPress plugin <= 7.3.7 - Local File Inclusion Vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Ruben Garcia GamiPress gamipress allows PHP Local File Inclusion.This issue affects GamiPress: from n/a through <= 7.3.7.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

6.5

CVSS3.1

CVE-2025-47507 - WordPress Better Search plugin <= 4.1.0 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Better Search better-search allows DOM-Based XSS.This issue affects Better Search: from n/a through <= 4.1.0.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

6.5

CVSS3.1

CVE-2025-47506 - WordPress Contextual Related Posts plugin <= 4.0.2 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Contextual Related Posts contextual-related-posts allows DOM-Based XSS.This issue affects Contextual Related Posts: from n/a through <= 4.0.2.

πŸ“… Published: May 7, 2025, 2:19 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.
Total resulsts: 347986
Page 5396 of 34,799
Β« previous page Β» next page
Filters