8.5

CVSS3.1

CVE-2025-30806 - WordPress Vimeotheque plugin <= 2.3.4.2 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Constantin Boiangiu Vimeotheque codeflavors-vimeo-video-post-lite allows SQL Injection.This issue affects Vimeotheque: from n/a through <= 2.3.4.2.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

4.3

CVSS3.1

CVE-2025-30805 - WordPress Flexible Cookies plugin <= 1.1.8 - Cross Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in wpdesk Flexible Cookies flexible-cookies allows Cross Site Request Forgery.This issue affects Flexible Cookies: from n/a through <= 1.1.8.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

4.3

CVSS3.1

CVE-2025-30804 - WordPress wpShopGermany IT-RECHT KANZLEI plugin <= 2.0 - Cross Site Request Forgery (CSRF) vulnerab…

Cross-Site Request Forgery (CSRF) vulnerability in maennchen1.de wpShopGermany IT-RECHT KANZLEI wpshopgermany-it-recht-kanzlei allows Cross Site Request Forgery.This issue affects wpShopGermany IT-RECHT KANZLEI: from n/a through <= 2.0.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

4.3

CVSS3.1

CVE-2025-30803 - WordPress Just Writing Statistics plugin <= 5.3 - Broken Access Control vulnerability

Missing Authorization vulnerability in Greg Ross Just Writing Statistics just-writing-statistics allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Just Writing Statistics: from n/a through <= 5.3.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

4.3

CVSS3.1

CVE-2025-30801 - WordPress TWB Woocommerce Reviews plugin <= 1.7.7 - Cross Site Request Forgery (CSRF) vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in Abu Bakar TWB Woocommerce Reviews twb-woocommerce-reviews allows Cross Site Request Forgery.This issue affects TWB Woocommerce Reviews: from n/a through <= 1.7.7.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

6.5

CVSS3.1

CVE-2025-30800 - WordPress Gum Elementor Addon plugin <= 1.3.10 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Atawai Gum Elementor Addon gum-elementor-addon allows Stored XSS.This issue affects Gum Elementor Addon: from n/a through <= 1.3.10.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

5.9

CVSS3.1

CVE-2025-30799 - WordPress WP Google Street View plugin <= 1.1.5 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pagup WP Google Street View wp-google-street-view allows Stored XSS.This issue affects WP Google Street View: from n/a through <= 1.1.5.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

4.7

CVSS3.1

CVE-2025-30795 - WordPress Automation By Autonami plugin <= 3.5.1 - Open Redirection vulnerability

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Aman FunnelKit Automations wp-marketing-automations allows Phishing.This issue affects FunnelKit Automations: from n/a through <= 3.5.1.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

5.9

CVSS3.1

CVE-2025-30792 - WordPress Comment Approved Notifier Extended plugin <= 5.2 - Cross Site Scripting (XSS) vulnerabili…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ufukart Comment Approved Notifier Extended comment-approved-notifier-extended allows Stored XSS.This issue affects Comment Approved Notifier Extended: from n/a through <= 5.2.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.

7.6

CVSS3.1

CVE-2025-30791 - WordPress Cart tracking for WooCommerce plugin <= 1.0.16 - SQL Injection Vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpdever Cart tracking for WooCommerce cart-tracking-for-woocommerce allows SQL Injection.This issue affects Cart tracking for WooCommerce: from n/a through <= 1.0.16.

πŸ“… Published: March 27, 2025, 10:54 a.m. πŸ”„ Last Modified: April 23, 2026, 3:27 p.m.
Total resulsts: 349182
Page 6177 of 34,919
Β« previous page Β» next page
Filters