5.3

CVSS3.1

CVE-2025-0318 - Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Member…

The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.9.1 through different error messages in the responses. This makes it possible for una…

📅 Published: Jan. 18, 2025, 5:33 a.m. 🔄 Last Modified: April 22, 2026, 1:45 p.m.

4.4

CVSS3.1

CVE-2025-0554 - Podlove Podcast Publisher <= 4.1.25 - Authenticated (Admin+) Stored Cross-Site Scripting via Feed N…

The Podlove Podcast Publisher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Feed Name value in version <= 4.1.25 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with administrator-level access, to inject arb…

📅 Published: Jan. 18, 2025, 5:33 a.m. 🔄 Last Modified: April 22, 2026, 1:45 p.m.

5.3

CVSS3.1

CVE-2024-12071 - Evergreen Content Poster – Auto Post and Schedule Your Best Content to Social Media <= 1.4.4 - Miss…

The Evergreen Content Poster – Auto Post and Schedule Your Best Content to Social Media plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the delete_network_post() function in all versions up to, and including, 1.4.4. This makes it possible for una…

📅 Published: Jan. 18, 2025, 3:21 a.m. 🔄 Last Modified: April 8, 2026, 5:14 p.m.

8.1

CVSS3.1

CVE-2025-23209 - Potential RCE with a compromised security key in craft/cms

Craft is a flexible, user-friendly CMS for creating custom digital experiences on the web and beyond. This is an remote code execution (RCE) vulnerability that affects Craft 4 and 5 installs where your security key has already been compromised. Anyone running an unpatched version of Craft with a co…

📅 Published: Jan. 18, 2025, 12:32 a.m. 🔄 Last Modified: Feb. 26, 2026, 7:09 p.m.

8.8

CVSS3.1

CVE-2023-50739 - A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in vari…

A buffer overflow vulnerability has been identified in the Internet Printing Protocol (IPP) in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.

📅 Published: Jan. 17, 2025, 11:47 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2024-11923 - Sensitive Information Disclosure in Fortra Application Hub Prior to version 1.3

Under certain log settings the IAM or CORE service will log credentials in the iam logfile in Fortra Application Hub (Formerly named Helpsystems One) prior to version 1.3

📅 Published: Jan. 17, 2025, 11:44 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

6.7

CVSS3.1

CVE-2018-9405 -

In BnDmAgent::onTransact of dm_agent.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

📅 Published: Jan. 17, 2025, 11:17 p.m. 🔄 Last Modified: July 10, 2025, 8:42 p.m.

7.8

CVSS3.1

CVE-2018-9401 -

In many locations, there is a possible way to access kernel memory in user space due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

📅 Published: Jan. 17, 2025, 11:17 p.m. 🔄 Last Modified: July 10, 2025, 8:42 p.m.

5.5

CVSS3.1

CVE-2018-9406 -

In NlpService, there is a possible way to obtain location information due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

📅 Published: Jan. 17, 2025, 11:16 p.m. 🔄 Last Modified: Jan. 31, 2025, 9:15 p.m.

5.1

CVSS3.1

CVE-2018-9389 -

In ip6_append_data of ip6_output.c, there is a possible way to achieve code execution due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

📅 Published: Jan. 17, 2025, 11:15 p.m. 🔄 Last Modified: Feb. 3, 2025, 2:15 p.m.
Total resulsts: 346625
Page 6799 of 34,663
« previous page » next page
Filters