751
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in slaFFik BuddyPress Groups Extras allows Cross Site Request Forgery. This issue affects BuddyPress Groups Extras: from n/a through 3.6.10.
|
CWE-352
Origin Validation Error
|
CVE-2025-24538
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
752
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in The Events Calendar The Events Calendar allows Cross Site Request Forgery. This issue affects The Events Calendar: from n/a through 6.7.0.
|
CWE-352
Origin Validation Error
|
CVE-2025-24537
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
753
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Marian Kanev Cab fare calculator allows Stored XSS. This issue affects Cab fare calculator: from n/a through 1.1.
|
CWE-862
Missing Authorization
|
CVE-2025-23982
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
754
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Benjamin Piwowarski PAPERCITE allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects PAPERCITE: from n/a through 0.5.18.
|
CWE-862
Missing Authorization
|
CVE-2025-23849
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
755
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ivan Chernyakov LawPress – Law Firm Website Management allows Reflected XSS. This issue affects L…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23756
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
756
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ulrich Sossou The Loops allows Reflected XSS. This issue affects The Loops: from n/a through 1.0.…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23754
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
757
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound CGD Arrange Terms allows Reflected XSS. This issue affects CGD Arrange Terms: from n/a t…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23752
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
758
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Nurul Amin, Mohammad Saiful Islam WP Smart Tooltip allows Stored XSS. This issue affects WP Smart…
|
CWE-79
Cross-site Scripting
|
CVE-2025-23669
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
759
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Saul Morales Pacheco Donate visa allows Stored XSS. This issue affects Donate visa: from n/a through 1.0.0.
|
CWE-862
Missing Authorization
|
CVE-2025-23656
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
760
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jonathan Lau CubePM allows Reflected XSS. This issue affects CubePM: from n/a through 1.0.
|
CWE-79
Cross-site Scripting
|
CVE-2025-23574
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|