0.0

CVE-2025-48236 - WordPress bunny.net plugin <= 2.3.0 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bunny.net bunny.net bunnycdn allows Stored XSS.This issue affects bunny.net: from n/a through <= 2.3.0.

πŸ“… Published: May 19, 2025, 2:44 p.m. πŸ”„ Last Modified: April 1, 2026, 5:24 p.m.

0.0

CVE-2025-48235 - WordPress WP Image Mask plugin <= 3.1.2 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bogdan Bendziukov WP Image Mask wp-image-mask allows DOM-Based XSS.This issue affects WP Image Mask: from n/a through <= 3.1.2.

πŸ“… Published: May 19, 2025, 2:44 p.m. πŸ”„ Last Modified: April 1, 2026, 5:24 p.m.

0.0

CVE-2025-48234 - WordPress Ultimate Blocks plugin <= 3.3.0 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ultimate Blocks Ultimate Blocks ultimate-blocks allows DOM-Based XSS.This issue affects Ultimate Blocks: from n/a through <= 3.3.0.

πŸ“… Published: May 19, 2025, 2:44 p.m. πŸ”„ Last Modified: April 1, 2026, 5:24 p.m.

0.0

CVE-2025-48233 - WordPress Affiliates Manager Google reCAPTCHA Integration plugin <= 1.0.6 - Cross Site Request Forg…

Cross-Site Request Forgery (CSRF) vulnerability in affmngr Affiliates Manager Google reCAPTCHA Integration affiliates-manager-google-recaptcha-integration allows Stored XSS.This issue affects Affiliates Manager Google reCAPTCHA Integration: from n/a through <= 1.0.6.

πŸ“… Published: May 19, 2025, 2:44 p.m. πŸ”„ Last Modified: April 1, 2026, 5:24 p.m.

0.0

CVE-2025-48232 - WordPress Xpro Addons For Beaver Builder – Lite plugin <= 1.5.5 - Cross Site Scripting (XSS) Vulner…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Xpro Xpro Addons For Beaver Builder &#8211; Lite xpro-addons-beaver-builder-elementor allows Stored XSS.This issue affects Xpro Addons For Beaver Builder &#8211; Lite: from n/a through <= 1.5.5.

πŸ“… Published: May 19, 2025, 2:44 p.m. πŸ”„ Last Modified: April 1, 2026, 5:24 p.m.

6.9

CVSS4.0

CVE-2025-4936 - projectworlds Online Food Ordering System admin-page.php sql injection

A vulnerability was found in projectworlds Online Food Ordering System 1.0. It has been classified as critical. Affected is an unknown function of the file /admin-page.php. The manipulation of the argument 1_price leads to sql injection. It is possible to launch the attack remotely. The exploit has…

πŸ“… Published: May 19, 2025, 2:31 p.m. πŸ”„ Last Modified: June 5, 2025, 7:39 p.m.

6.9

CVSS4.0

CVE-2025-4935 - SourceCodester Stock Management System changePassword.php sql injection

A vulnerability was found in SourceCodester Stock Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /php_action/changePassword.php. The manipulation of the argument user_id leads to sql injection. The attack may be initiated remotely. The explo…

πŸ“… Published: May 19, 2025, 2 p.m. πŸ”„ Last Modified: May 28, 2025, 12:29 p.m.

6.9

CVSS4.0

CVE-2025-4934 - PHPGurukul User Registration & Login and User Management System edit-profile.php sql injection

A vulnerability has been found in PHPGurukul User Registration & Login and User Management System 3.3 and classified as critical. This vulnerability affects unknown code of the file /edit-profile.php. The manipulation of the argument Contact leads to sql injection. The attack can be initiated remot…

πŸ“… Published: May 19, 2025, 1:31 p.m. πŸ”„ Last Modified: May 28, 2025, 12:45 p.m.

5.3

CVSS4.0

CVE-2025-4933 - ponaravindb Hospital-Management-System doctor-panel.php sql injection

A vulnerability, which was classified as critical, was found in ponaravindb Hospital-Management-System 1.0. This affects an unknown part of the file /doctor-panel.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been di…

πŸ“… Published: May 19, 2025, 1 p.m. πŸ”„ Last Modified: May 21, 2025, 5:43 p.m.

6.9

CVSS4.0

CVE-2025-4932 - projectworlds Online Lawyer Management System lawyer_registation.php sql injection

A vulnerability, which was classified as critical, has been found in projectworlds Online Lawyer Management System 1.0. Affected by this issue is some unknown functionality of the file /lawyer_registation.php. The manipulation of the argument email leads to sql injection. The attack may be launched…

πŸ“… Published: May 19, 2025, 12:31 p.m. πŸ”„ Last Modified: June 17, 2025, 2:09 p.m.
Total resulsts: 342375
Page 4662 of 34,238
Β« previous page Β» next page
Filters