CVE Alert: CVE-2025-27012
Vulnerability Summary: CVE-2025-27012 Cross-Site Request Forgery (CSRF) vulnerability in a1post A1POST.BG Shipping for Woo allows Privilege Escalation. This issue affects...
Vulnerability Summary: CVE-2025-27012 Cross-Site Request Forgery (CSRF) vulnerability in a1post A1POST.BG Shipping for Woo allows Privilege Escalation. This issue affects...
Vulnerability Summary: CVE-2025-26774 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rock Solid Responsive Modal Builder...
Vulnerability Summary: CVE-2024-13461 The Autoship Cloud for WooCommerce Subscription Products plugin for WordPress is vulnerable to Stored Cross-Site Scripting via...
Vulnerability Summary: CVE-2024-13353 The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin for WordPress is...
Vulnerability Summary: CVE-2024-13648 The Maps for WP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'MapOnePoint'...
Vulnerability Summary: CVE-2025-1410 The Events Calendar Made Simple – Pie Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting...
Vulnerability Summary: CVE-2024-12452 The Ziggeo plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ziggeo_event' shortcode in...
Vulnerability Summary: CVE-2025-1402 The Event Tickets and Registration plugin for WordPress is vulnerable to unauthorized loss of data due to...
Vulnerability Summary: CVE-2024-12276 The Ultimate Member – User Profile, Registration, Login, Member Directory, Content Restriction & Membership Plugin plugin for...
Vulnerability Summary: CVE-2025-1535 A vulnerability was found in Baiyi Cloud Asset Management System 8.142.100.161. It has been classified as critical....
Vulnerability Summary: CVE-2024-13455 The igumbi Online Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'igumbi_calendar'...
Vulnerability Summary: CVE-2025-1489 The WP-Appbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's appbox shortcode in...
Vulnerability Summary: CVE-2025-26794 Exim 4.98 before 4.98.1, when SQLite hints and ETRN serialization are used, allows remote SQL injection. Affected...
Vulnerability Summary: CVE-2020-6158 Opera Mini for Android before version 52.2 is vulnerable to an address bar spoofing attack. The vulnerability...
Vulnerability Summary: CVE-2024-13846 The Indeed Ultimate Learning Pro plugin for WordPress is vulnerable to time-based SQL Injection via the ‘post_id’...
Vulnerability Summary: CVE-2024-13900 The Head, Footer and Post Injections plugin for WordPress is vulnerable to PHP Code Injection in all...
Vulnerability Summary: CVE-2024-13713 The WPExperts Square For GiveWP plugin for WordPress is vulnerable to SQL Injection via the 'post' parameter...
Vulnerability Summary: CVE-2025-1538 A vulnerability classified as critical was found in D-Link DAP-1320 1.00. Affected by this vulnerability is the...
Vulnerability Summary: CVE-2025-1536 A vulnerability was found in Raisecom Multi-Service Intelligent Gateway up to 20250208. It has been declared as...
Vulnerability Summary: CVE-2025-1537 A vulnerability was found in Harpia DiagSystem 12. It has been rated as critical. This issue affects...
Vulnerability Summary: CVE-2024-10222 The SVG Support plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in...
Vulnerability Summary: CVE-2025-1539 A vulnerability, which was classified as critical, has been found in D-Link DAP-1320 1.00. Affected by this...
Vulnerability Summary: CVE-2025-1544 A vulnerability, which was classified as critical, was found in dingfanzu CMS up to 20250210. Affected is...
Vulnerability Summary: CVE-2025-1543 A vulnerability, which was classified as problematic, has been found in iteachyou Dreamer CMS 4.1.3. This issue...