7.1

CVSS3.1

CVE-2026-25033 - WordPress Motta Addons plugin < 1.6.1 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in uixthemes Motta Addons motta-addons allows Reflected XSS.This issue affects Motta Addons: from n/a through < 1.6.1.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

9.8

CVSS3.1

CVE-2026-25032 - WordPress Ricky theme < 2.31 - PHP Object Injection vulnerability

Deserialization of Untrusted Data vulnerability in park_of_ideas Ricky ricky allows Object Injection.This issue affects Ricky: from n/a through < 2.31.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

9.8

CVSS3.1

CVE-2026-25031 - WordPress Tasty Daily theme < 1.27 - PHP Object Injection vulnerability

Deserialization of Untrusted Data vulnerability in park_of_ideas Tasty Daily tastydaily allows Object Injection.This issue affects Tasty Daily: from n/a through < 1.27.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

9.8

CVSS3.1

CVE-2026-25030 - WordPress Goldish theme < 3.47 - PHP Object Injection vulnerability

Deserialization of Untrusted Data vulnerability in park_of_ideas Goldish goldish allows Object Injection.This issue affects Goldish: from n/a through < 3.47.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

9.8

CVSS3.1

CVE-2026-25029 - WordPress KIDZ theme <= 5.24 - PHP Object Injection vulnerability

Deserialization of Untrusted Data vulnerability in park_of_ideas KIDZ kidz allows Object Injection.This issue affects KIDZ: from n/a through <= 5.24.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

7.5

CVSS3.1

CVE-2026-25026 - WordPress Team plugin <= 5.0.11 - Broken Access Control vulnerability

Missing Authorization vulnerability in RadiusTheme Team tlp-team allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Team: from n/a through <= 5.0.11.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

7.1

CVSS3.1

CVE-2026-25025 - WordPress VikRestaurants plugin <= 1.5.2 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e4jvikwp VikRestaurants vikrestaurants allows Reflected XSS.This issue affects VikRestaurants: from n/a through <= 1.5.2.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

7.1

CVSS3.1

CVE-2026-25018 - WordPress NaturaLife Extensions plugin <= 2.1 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in stmcan NaturaLife Extensions naturalife-extensions allows Reflected XSS.This issue affects NaturaLife Extensions: from n/a through <= 2.1.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

8.1

CVSS3.1

CVE-2026-25017 - WordPress NaturaLife Extensions plugin <= 2.1 - Local File Inclusion vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in stmcan NaturaLife Extensions naturalife-extensions allows PHP Local File Inclusion.This issue affects NaturaLife Extensions: from n/a through <= 2.1.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.

7.1

CVSS3.1

CVE-2026-25013 - WordPress Phox Hosting plugin <= 2.0.8 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WHMCSdes Phox Hosting phox-host allows Reflected XSS.This issue affects Phox Hosting: from n/a through <= 2.0.8.

๐Ÿ“… Published: March 25, 2026, 4:14 p.m. ๐Ÿ”„ Last Modified: March 30, 2026, 1:27 p.m.
Total resulsts: 341940
Page 176 of 34,194
ยซ previous page ยป next page
Filters