9.9

CVSS3.1

CVE-2025-24677 - WordPress Post/Page Copying Tool to Export and Import post/page for Cross site Migration Plugin <= โ€ฆ

Improper Control of Generation of Code ('Code Injection') vulnerability in wpspin Post/Page Copying Tool postpage-import-export-with-custom-fields-taxonomies allows Remote Code Inclusion.This issue affects Post/Page Copying Tool: from n/a through <= 2.0.3.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:25 p.m.

7.5

CVSS3.1

CVE-2025-24648 - WordPress Admin and Site Enhancements (ASE) Plugin <= 7.6.2.1 - Privilege Escalation vulnerability

Incorrect Privilege Assignment vulnerability in Bowo Admin and Site Enhancements (ASE) admin-site-enhancements allows Privilege Escalation.This issue affects Admin and Site Enhancements (ASE): from n/a through <= 7.6.2.1.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:25 p.m.

7.1

CVSS3.1

CVE-2025-24602 - WordPress WP24 Domain Check plugin <= 1.10.14 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP24 WP24 Domain Check wp24-domain-check allows Reflected XSS.This issue affects WP24 Domain Check: from n/a through <= 1.10.14.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:25 p.m.

7.1

CVSS3.1

CVE-2025-24599 - WordPress Newsletters plugin <= 4.9.9.6 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tribulant Software Newsletters newsletters-lite allows Reflected XSS.This issue affects Newsletters: from n/a through <= 4.9.9.6.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:25 p.m.

7.1

CVSS3.1

CVE-2025-24598 - WordPress WP Mailster plugin <= 1.8.17.0 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in brandtoss WP Mailster wp-mailster allows Reflected XSS.This issue affects WP Mailster: from n/a through <= 1.8.17.0.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:25 p.m.

7.1

CVSS3.1

CVE-2025-23645 - WordPress Find Content IDs plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Optimize Worldwide Find Content IDs find-content-ids allows Reflected XSS.This issue affects Find Content IDs: from n/a through <= 1.0.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:24 p.m.

8.5

CVSS3.1

CVE-2025-22700 - WordPress Traveler Code plugin < 3.1.3 - Subscriber+ Arbitrary SQL Execution vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in shinetheme Traveler Code traveler-code.This issue affects Traveler Code: from n/a through < 3.1.3.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:23 p.m.

9

CVSS3.1

CVE-2025-22699 - WordPress Traveler Code plugin < 3.1.2 - Unauthenticated Arbitrary SQL Execution vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in shinetheme Traveler Code traveler-code.This issue affects Traveler Code: from n/a through < 3.1.2.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:23 p.m.

6.5

CVSS3.1

CVE-2025-22697 - WordPress Responsive Blocks plugin <= 1.9.9 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CyberChimps Responsive Blocks responsive-block-editor-addons allows Reflected XSS.This issue affects Responsive Blocks: from n/a through <= 1.9.9.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:23 p.m.

5.4

CVSS3.1

CVE-2025-22696 - WordPress Document Block โ€“ Upload & Embed Docs, PDF, PPT, XLS or Any Documents plugin <= 1.1.0 - Brโ€ฆ

Missing Authorization vulnerability in WPDeveloper Document Block โ€“ Upload & Embed Docs document.This issue affects Document Block โ€“ Upload & Embed Docs: from n/a through <= 1.1.0.

๐Ÿ“… Published: Feb. 4, 2025, 2:21 p.m. ๐Ÿ”„ Last Modified: April 23, 2026, 3:23 p.m.
Total resulsts: 349182
Page 6853 of 34,919
ยซ previous page ยป next page
Filters