6.5

CVSS3.1

CVE-2025-2890 - tagDiv Opt-In Builder <= 1.7 - Authenticated (Subscriber+) SQL Injection via subscriptionCouponId P…

The tagDiv Opt-In Builder plugin for WordPress is vulnerable to time-based SQL Injection via the ‘subscriptionCouponId’ parameter in all versions up to, and including, 1.7 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This…

📅 Published: April 30, 2025, 8:21 a.m. 🔄 Last Modified: April 20, 2026, 11:15 p.m.

7.8

CVSS3.1

CVE-2025-4125 - ISPSoft File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacker to execute arbitrary code when parsing ISP file.

📅 Published: April 30, 2025, 8:21 a.m. 🔄 Last Modified: May 16, 2025, 4:56 p.m.

7.8

CVSS3.1

CVE-2025-4124 - ISPSoft File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacker to execute arbitrary code when parsing ISP file.

📅 Published: April 30, 2025, 8:20 a.m. 🔄 Last Modified: May 16, 2025, 4:56 p.m.

7.8

CVSS3.1

CVE-2025-22884 - ISPSoft File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

Delta Electronics ISPSoft version 3.20 is vulnerable to a Stack-Based buffer overflow vulnerability that could allow an attacker to execute arbitrary code when parsing DVP file.

📅 Published: April 30, 2025, 7:37 a.m. 🔄 Last Modified: Aug. 25, 2025, 3:15 a.m.

7.8

CVSS3.1

CVE-2025-22883 - ISPSoft File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability

Delta Electronics ISPSoft version 3.20 is vulnerable to an Out-Of-Bounds Write vulnerability that could allow an attacker to execute arbitrary code when parsing DVP file.

📅 Published: April 30, 2025, 7:36 a.m. 🔄 Last Modified: May 16, 2025, 4:56 p.m.

7.8

CVSS3.1

CVE-2025-22882 - ISPSoft File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability

Delta Electronics ISPSoft version 3.20 is vulnerable to a Stack-Based buffer overflow vulnerability that could allow an attacker to leverage debugging logic to execute arbitrary code when parsing CBDGL file.

📅 Published: April 30, 2025, 7:34 a.m. 🔄 Last Modified: Aug. 25, 2025, 3:15 a.m.

4.9

CVSS3.1

CVE-2025-3471 - SureForms < 1.4.4 - Contributor+ Settings Update

The SureForms WordPress plugin before 1.4.4 does not have proper authorisation check when updating its settings via the REST API, which could allow Contributor and above roles to perform such action

📅 Published: April 30, 2025, 6 a.m. 🔄 Last Modified: May 9, 2025, 1:48 p.m.

5.4

CVSS3.1

CVE-2025-3953 - WP Statistics – The Most Popular Privacy-Friendly Analytics Plugin <= 14.13.3 - Missing Authorizati…

The WP Statistics – The Most Popular Privacy-Friendly Analytics Plugin plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'optionUpdater' function in all versions up to, and including, 14.13.3. This makes it possible for authenticated at…

📅 Published: April 30, 2025, 5:23 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2025-4107 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

📅 Published: April 30, 2025, 3:30 a.m. 🔄 Last Modified: May 8, 2025, 11:15 p.m.

10

CVSS3.1

CVE-2025-32444 - vLLM Vulnerable to Remote Code Execution via Mooncake Integration

vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.6.5 and prior to 0.8.5, having vLLM integration with mooncake, are vulnerable to remote code execution due to using pickle based serialization over unsecured ZeroMQ sockets. The vulnerable…

📅 Published: April 30, 2025, 12:25 a.m. 🔄 Last Modified: May 28, 2025, 7:12 p.m.
Total resulsts: 347769
Page 5488 of 34,777
« previous page » next page
Filters