1841
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in orlandolac Facilita Form Tracker allows Stored XSS. This issue affects Facilita Form Tracker: from n/a through 1.0.
|
CWE-352
Origin Validation Error
|
CVE-2025-25128
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1842
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in zmseo ZMSEO allows Stored XSS. This issue affects ZMSEO: from n/a through 1.14.1.
|
CWE-352
Origin Validation Error
|
CVE-2025-25126
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1843
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in CyrilG Fyrebox Quizzes allows Stored XSS. This issue affects Fyrebox Quizzes: from n/a through 2.7.
|
CWE-352
Origin Validation Error
|
CVE-2025-25125
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1844
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in xdark Easy Related Posts allows Stored XSS. This issue affects Easy Related Posts: from n/a through 2.0.2.
|
CWE-352
Origin Validation Error
|
CVE-2025-25123
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1845
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Melodic Media Slide Banners allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Slide Banners: from n/a through 1.3.
|
CWE-862
Missing Authorization
|
CVE-2025-25120
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1846
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alex Polonski Smart Countdown FX allows Stored XSS. This issue affects Smart Countdown FX: from n…
|
CWE-79
Cross-site Scripting
|
CVE-2025-25117
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1847
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in sudipto Link to URL / Post allows Blind SQL Injection. This issue affects Link to URL / Post: fro…
|
CWE-89
SQL Injection
|
CVE-2025-25116
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1848
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in WP Spell Check WP Spell Check allows Cross Site Request Forgery. This issue affects WP Spell Check: from n/a through 9.21.
|
CWE-352
Origin Validation Error
|
CVE-2025-25111
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1849
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Metagauss Event Kikfyre allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Event Kikfyre: from n/a through 2.1.8.
|
CWE-862
Missing Authorization
|
CVE-2025-25110
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1850
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in sainwp OneStore Sites allows Cross Site Request Forgery. This issue affects OneStore Sites: from n/a through 0.1.1.
|
CWE-352
Origin Validation Error
|
CVE-2025-25107
|
2025-02-7 19:15 |
2025-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|