691
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Metatagg Inc Custom WP Store Locator allows Reflected XSS. This issue affects Custom WP Store Loc…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24676
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
692
|
- |
|
-
|
-
|
Deserialization of Untrusted Data vulnerability in MagePeople Team Taxi Booking Manager for WooCommerce allows Object Injection. This issue affects Taxi Booking Manager for WooCommerce: from n/a thro…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2025-24661
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
693
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in wp.insider Simple Membership Custom Messages allows Reflected XSS. This issue affects Simple Memb…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24660
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
694
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Realtyna Realtyna Provisioning allows Reflected XSS. This issue affects Realtyna Provisioning: fr…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24656
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
695
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maxim Glazunov XML for Avito allows Reflected XSS. This issue affects XML for Avito: from n/a thr…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24646
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
696
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Amento Tech Pvt ltd WPGuppy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WPGuppy: from n/a through 1.1.0.
|
CWE-862
Missing Authorization
|
CVE-2025-24643
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
697
|
- |
|
-
|
-
|
Missing Authorization vulnerability in theme funda Setup Default Featured Image allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Setup Default Featured Imag…
|
CWE-862
Missing Authorization
|
CVE-2025-24642
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
698
|
- |
|
-
|
-
|
Insertion of Sensitive Information Into Sent Data vulnerability in GREYS Korea for WooCommerce allows Retrieve Embedded Sensitive Data. This issue affects Korea for WooCommerce: from n/a through 1.1.…
|
CWE-201
Insertion of Sensitive Information Into Sent Data
|
CVE-2025-24639
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
699
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in PhiloPress BP Email Assign Templates allows Reflected XSS. This issue affects BP Email Assign Tem…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24631
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
700
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in MantraBrain Sikshya LMS allows Reflected XSS. This issue affects Sikshya LMS: from n/a through 0.…
|
CWE-79
Cross-site Scripting
|
CVE-2025-24630
|
2025-02-4 00:15 |
2025-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|