701
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GT3 Photo Gallery Photo Gallery - GT3 Image Gallery & Gutenberg Block Gallery allows Reflected XS…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24707
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
702
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Realwebcare Image Gallery – Responsive Photo Gallery allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Image Gallery –…
|
CWE-862
Missing Authorization
|
CVE-2025-24697
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
703
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ederson Peka Media Downloader allows Reflected XSS. This issue affects Media Downloader: from n/a…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24684
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
704
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metatagg Inc Custom WP Store Locator allows Reflected XSS. This issue affects Custom WP Store Loc…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24676
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
705
|
- |
|
-
|
-
|
Deserialization of Untrusted Data vulnerability in MagePeople Team Taxi Booking Manager for WooCommerce allows Object Injection. This issue affects Taxi Booking Manager for WooCommerce: from n/a thro…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2025-24661
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
706
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wp.insider Simple Membership Custom Messages allows Reflected XSS. This issue affects Simple Memb…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24660
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
707
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Realtyna Realtyna Provisioning allows Reflected XSS. This issue affects Realtyna Provisioning: fr…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24656
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
708
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maxim Glazunov XML for Avito allows Reflected XSS. This issue affects XML for Avito: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24646
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
709
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Amento Tech Pvt ltd WPGuppy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WPGuppy: from n/a through 1.1.0.
|
CWE-862
Missing Authorization
|
CVE-2025-24643
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
710
|
- |
|
-
|
-
|
Missing Authorization vulnerability in theme funda Setup Default Featured Image allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Setup Default Featured Imag…
|
CWE-862
Missing Authorization
|
CVE-2025-24642
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|