4.3

CVSS3.1

CVE-2025-47543 - WordPress TrueBooker plugin <= 1.0.7 - Cross Site Request Forgery (CSRF) Vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in themetechmount TrueBooker truebooker-appointment-booking allows Cross Site Request Forgery.This issue affects TrueBooker: from n/a through <= 1.0.7.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

4.3

CVSS3.1

CVE-2025-47542 - WordPress Simple calendar for Elementor plugin <= 1.6.5 - Cross Site Request Forgery (CSRF) Vulnera…

Cross-Site Request Forgery (CSRF) vulnerability in Michael Simple calendar for Elementor simple-calendar-for-elementor allows Cross Site Request Forgery.This issue affects Simple calendar for Elementor: from n/a through <= 1.6.5.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

5.3

CVSS3.1

CVE-2025-47540 - WordPress weMail plugin <= 1.14.13 - Sensitive Data Exposure Vulnerability

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in weDevs weMail wemail allows Retrieve Embedded Sensitive Data.This issue affects weMail: from n/a through <= 1.14.13.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

7.6

CVSS3.1

CVE-2025-47538 - WordPress Cart tracking for WooCommerce plugin <= 1.0.17 - SQL Injection Vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in wpdever Cart tracking for WooCommerce cart-tracking-for-woocommerce allows SQL Injection.This issue affects Cart tracking for WooCommerce: from n/a through <= 1.0.17.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

7.6

CVSS3.1

CVE-2025-47537 - WordPress PDF Invoice Builder for WooCommerce plugin <= 5.3.8 - SQL Injection Vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in add-ons.org PDF Invoice Builder for WooCommerce pdf-for-woocommerce allows SQL Injection.This issue affects PDF Invoice Builder for WooCommerce: from n/a through <= 5.3.8.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

8.1

CVSS3.1

CVE-2025-47533 - WordPress Graphina plugin <= 3.0.4 - Cross Site Request Forgery (CSRF) to Local File Inclusion vuln…

Cross-Site Request Forgery (CSRF) vulnerability in Iqonic Design Graphina graphina-elementor-charts-and-graphs allows PHP Local File Inclusion.This issue affects Graphina: from n/a through <= 3.0.4.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

7.5

CVSS3.1

CVE-2025-47531 - WordPress XT Event Widget for Social Events plugin <= 1.1.7 - Local File Inclusion Vulnerability

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Xylus Themes XT Event Widget for Social Events xt-facebook-events allows PHP Local File Inclusion.This issue affects XT Event Widget for Social Events: from n/a through <= 1.1.7.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

4.3

CVSS3.1

CVE-2025-47528 - WordPress Ovation Elements plugin <= 1.1.2 - Broken Access Control Vulnerability

Missing Authorization vulnerability in pewilliams Ovation Elements ovation-elements allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ovation Elements: from n/a through <= 1.1.2.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

5.4

CVSS3.1

CVE-2025-47526 - WordPress GS Variation Swatches for WooCommerce plugin <= 3.0.4 - Broken Access Control Vulnerabili…

Missing Authorization vulnerability in GS Plugins GS Variation Swatches for WooCommerce gs-woo-variation-swatches allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects GS Variation Swatches for WooCommerce: from n/a through <= 3.0.4.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.

5.9

CVSS3.1

CVE-2025-47525 - WordPress Bold Page Builder plugin <= 5.3.0 - Cross Site Scripting (XSS) Vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Builder: from n/a through <= 5.3.0.

πŸ“… Published: May 7, 2025, 2:20 p.m. πŸ”„ Last Modified: April 23, 2026, 3:30 p.m.
Total resulsts: 347742
Page 5370 of 34,775
Β« previous page Β» next page
Filters