0.0

CVE-2025-22732 - WordPress Ad Blocking Detector plugin <= 3.6.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Admiral Ad Blocking Detector ad-blocking-detector allows Stored XSS.This issue affects Ad Blocking Detector: from n/a through <= 3.6.0.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22727 - WordPress MailChimp Subscribe Form plugin <= 4.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PluginOps MailChimp Subscribe Forms mailchimp-subscribe-sm allows Stored XSS.This issue affects MailChimp Subscribe Forms : from n/a through <= 4.1.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22723 - WordPress Barcode Scanner and Inventory manager plugin <= 1.6.7 - Arbitrary File Upload vulnerabili…

Unrestricted Upload of File with Dangerous Type vulnerability in Dmitry V. (CEO of "UKR Solution") Barcode Scanner with Inventory & Order Manager barcode-scanner-lite-pos-to-manage-products-inventory-and-orders allows Upload a Web Shell to a Web Server.This issue affects Barcode Scanner with Invent…

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22719 - WordPress VikAppointments Services Booking Calendar plugin <= 1.2.16 - CSRF to Stored XSS vulnerabi…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in e4jvikwp VikAppointments Services Booking Calendar vikappointments allows Stored XSS.This issue affects VikAppointments Services Booking Calendar: from n/a through <= 1.2.16.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22718 - WordPress FAT Event Lite plugin <= 1.1 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in roninwp FAT Event Lite fat-event-lite allows Stored XSS.This issue affects FAT Event Lite: from n/a through <= 1.1.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22717 - WordPress My Tickets plugin <= 2.0.9 - Broken Access Control vulnerability

Missing Authorization vulnerability in Joe Dolson My Tickets my-tickets allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects My Tickets: from n/a through <= 2.0.9.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

8.8

CVSS3.1

CVE-2025-22716 - WordPress Taskbuilder Plugin <= 3.0.6 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in taskbuilder Taskbuilder taskbuilder allows SQL Injection.This issue affects Taskbuilder: from n/a through <= 3.0.6.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22711 - WordPress Image Source Control Lite Plugin <= 2.29.0 - Reflected Cross Site Scripting (XSS) vulnera…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Thomas Maier Image Source Control image-source-control-isc allows Reflected XSS.This issue affects Image Source Control: from n/a through <= 2.29.0.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22710 - WordPress Smart Manager Plugin <= 8.52.0 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in storeapps Smart Manager smart-manager-for-wp-e-commerce allows Blind SQL Injection.This issue affects Smart Manager: from n/a through <= 8.52.0.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.

0.0

CVE-2025-22709 - WordPress Verge3D Publishing and E-Commerce Plugin <= 4.8.0 - Reflected Cross Site Scripting (XSS) …

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Soft8Soft LLC Verge3D verge3d allows Reflected XSS.This issue affects Verge3D: from n/a through <= 4.8.0.

πŸ“… Published: Jan. 21, 2025, 1:57 p.m. πŸ”„ Last Modified: April 1, 2026, 4:22 p.m.
Total resulsts: 342654
Page 6375 of 34,266
Β« previous page Β» next page
Filters