991
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Amento Tech Pvt ltd WPGuppy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WPGuppy: from n/a through 1.1.0.
|
CWE-862
Missing Authorization
|
CVE-2025-24643
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
992
|
- |
|
-
|
-
|
Missing Authorization vulnerability in theme funda Setup Default Featured Image allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Setup Default Featured Imag…
|
CWE-862
Missing Authorization
|
CVE-2025-24642
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
993
|
- |
|
-
|
-
|
Insertion of Sensitive Information Into Sent Data vulnerability in GREYS Korea for WooCommerce allows Retrieve Embedded Sensitive Data. This issue affects Korea for WooCommerce: from n/a through 1.1.…
|
CWE-201
Insertion of Sensitive Information Into Sent Data
|
CVE-2025-24639
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
994
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PhiloPress BP Email Assign Templates allows Reflected XSS. This issue affects BP Email Assign Tem…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24631
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
995
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MantraBrain Sikshya LMS allows Reflected XSS. This issue affects Sikshya LMS: from n/a through 0.…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24630
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
996
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPGear Import Excel to Gravity Forms allows Reflected XSS. This issue affects Import Excel to Gra…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24629
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
997
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound AIO Shortcodes allows Stored XSS. This issue affects AIO Shortcodes: from n/a through 1.…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24620
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
998
|
- |
|
-
|
-
|
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in realmag777 WOLF allows Path Traversal. This issue affects WOLF: from n/a through 1.0.8.5.
|
CWE-22
Path Traversal
|
CVE-2025-24605
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
999
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fatcat Apps Landing Page Cat allows Reflected XSS. This issue affects Landing Page Cat: from n/a …
|
CWE-79
Cross-site Scripting
|
CVE-2025-24576
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1000
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Pepro Dev. Group PeproDev WooCommerce Receipt Uploader allows Reflected XSS. This issue affects P…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24574
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|