281
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Oren hahiashvili add custom google tag manager allows Stored XSS.This issue affects add custom google tag manager: from n/a through 1.0.3.
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23537
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
282
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Adrian Moreno WP Lyrics allows Stored XSS.This issue affects WP Lyrics: from n/a through 0.4.1.
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23533
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
283
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Regios MyAnime Widget allows Privilege Escalation.This issue affects MyAnime Widget: from n/a through 1.0.
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23532
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
284
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Yonatan Reinberg of Social Ink Custom Post Type Lockdown allows Privilege Escalation.This issue affects Custom Post Type Lockdown: from n/a through …
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23530
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
285
|
- |
|
-
|
-
|
Incorrect Privilege Assignment vulnerability in Wouter Dijkstra DD Roles allows Privilege Escalation.This issue affects DD Roles: from n/a through 4.1.
New
|
CWE-266
Incorrect Privilege Assignment
|
CVE-2025-23528
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
286
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Sanjaysolutions Loginplus allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Loginplus: from n/a through 1.2.
New
|
CWE-862
Missing Authorization
|
CVE-2025-23514
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
287
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Joshua Wieczorek Bible Embed allows Stored XSS.This issue affects Bible Embed: from n/a through 0.0.4.
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23513
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
288
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Viktoria Rei Bauer WP-BlackCheck allows Stored XSS.This issue affects WP-BlackCheck: from n/a through 2.7.2.
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23511
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
289
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in Zaantar WordPress Logging Service allows Stored XSS.This issue affects WordPress Logging Service: from n/a through 1.5.4.
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23510
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
290
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in EdesaC Extra Options – Favicons allows Stored XSS.This issue affects Extra Options – Favicons: from n/a through 1.1.0.
New
|
CWE-352
Origin Validation Error
|
CVE-2025-23508
|
2025-01-17 05:15 |
2025-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|