1451
|
4.3 |
MEDIUM
Network
|
-
|
-
|
The RomethemeKit For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.5.2 via the register_controls function in widgets/offcanvas…
|
CWE-1230
Exposure of Sensitive Information Through Metadata
|
CVE-2024-10324
|
2025-01-24 23:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1452
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound FooGallery Captions allows Reflected XSS. This issue affects FooGallery Captions: from n…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23889
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1453
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Custom Page Extensions allows Reflected XSS. This issue affects Custom Page Extensions: …
|
CWE-79
Cross-site Scripting
|
CVE-2025-23888
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1454
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound MJ Contact us allows Reflected XSS. This issue affects MJ Contact us: from n/a through 5…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23885
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1455
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Sticky Button allows Stored XSS. This issue affects Sticky Button: from n/a through 1.0.
|
CWE-79
Cross-site Scripting
|
CVE-2025-23839
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1456
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Bauernregeln allows Reflected XSS. This issue affects Bauernregeln: from n/a through 1.0…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23838
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1457
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound One Backend Language allows Reflected XSS. This issue affects One Backend Language: from…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23837
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1458
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Network-Favorites allows Reflected XSS. This issue affects Network-Favorites: from n/a t…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23737
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1459
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Gigaom Sphinx allows Reflected XSS. This issue affects Gigaom Sphinx: from n/a through 0…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23734
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1460
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Quote me allows Reflected XSS. This issue affects Quote me: from n/a through 1.0.
|
CWE-79
Cross-site Scripting
|
CVE-2025-23711
|
2025-01-24 20:15 |
2025-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|