5.4

CVSS3.1

CVE-2025-23849 - WordPress PAPERCITE plugin <= 0.5.18 - Broken Access Control vulnerability

Missing Authorization vulnerability in bpiwowar PAPERCITE papercite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects PAPERCITE: from n/a through <= 0.5.18.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

7.1

CVSS3.1

CVE-2025-23756 - WordPress LawPress plugin <= 1.4.5 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ivanchernyakov LawPress – Law Firm Website Management lawpress allows Reflected XSS.This issue affects LawPress – Law Firm Website Management: from n/a through <= 1.4.5.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

7.1

CVSS3.1

CVE-2025-23754 - WordPress The Loops plugin <= 1.0.2 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ulrich Sossou The Loops the-loops allows Reflected XSS.This issue affects The Loops: from n/a through <= 1.0.2.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

7.1

CVSS3.1

CVE-2025-23752 - WordPress CGD Arrange Terms plugin <= 1.1.3 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Clifton Griffin CGD Arrange Terms shopp-arrange allows Reflected XSS.This issue affects CGD Arrange Terms: from n/a through <= 1.1.3.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23669 - WordPress WP Smart Tooltip plugin <= 1.0.0 - Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nurul Amin WP Smart Tooltip wp-smart-tool-tip allows Stored XSS.This issue affects WP Smart Tooltip: from n/a through <= 1.0.0.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

6.5

CVSS3.1

CVE-2025-23656 - WordPress Donate visa plugin <= 1.0.0 - Stored Cross Site Scripting (XSS) vulnerability

Missing Authorization vulnerability in Saul Morales Pacheco Donate visa donate-visa allows Stored XSS.This issue affects Donate visa: from n/a through <= 1.0.0.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

7.1

CVSS3.1

CVE-2025-23574 - WordPress CubePM plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jonathan Lau CubePM cubepm allows Reflected XSS.This issue affects CubePM: from n/a through <= 1.0.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:24 p.m.

7.1

CVSS3.1

CVE-2025-23531 - WordPress RSVPMaker Volunteer Roles plugin <= 1.5.1 - Reflected Cross Site Scripting (XSS) vulnerab…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in davidfcarr RSVPMaker Volunteer Roles rsvpmaker-volunteer-roles allows Reflected XSS.This issue affects RSVPMaker Volunteer Roles: from n/a through <= 1.5.1.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:23 p.m.

6.5

CVSS3.1

CVE-2025-23529 - WordPress Minterpress plugin <= 1.0.5 - Arbitrary Content Deletion vulnerability

Missing Authorization vulnerability in blokhauswp Minterpress minterpress allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Minterpress: from n/a through <= 1.0.5.

πŸ“… Published: Jan. 27, 2025, 2:22 p.m. πŸ”„ Last Modified: April 23, 2026, 3:23 p.m.

7.1

CVSS3.1

CVE-2025-22513 - WordPress Simple Locator Plugin <= 2.0.4 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Kyle Phillips Simple Locator simple-locator allows Reflected XSS.This issue affects Simple Locator: from n/a through <= 2.0.4.

πŸ“… Published: Jan. 27, 2025, 1:59 p.m. πŸ”„ Last Modified: April 23, 2026, 3:23 p.m.
Total resulsts: 347398
Page 6769 of 34,740
Β« previous page Β» next page
Filters