3331
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in traveller11 Google Maps Travel Route allows SQL Injection.This issue affects Google Maps Travel R…
|
CWE-89
SQL Injection
|
CVE-2025-22537
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3332
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Jonathan Kern WPListCal allows SQL Injection.This issue affects WPListCal: from n/a through 1.3.5.
|
CWE-89
SQL Injection
|
CVE-2025-22535
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3333
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Yamna Khawaja Mailing Group Listserv allows SQL Injection.This issue affects Mailing Group Listse…
|
CWE-89
SQL Injection
|
CVE-2025-22527
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3334
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Farrell wp Hosting Performance Check allows Reflected XSS.This issue affects wp Hosting Per…
|
CWE-79
Cross-site Scripting
|
CVE-2025-22521
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3335
|
- |
|
-
|
-
|
Deserialization of Untrusted Data vulnerability in Konrad Karpieszuk WC Price History for Omnibus allows Object Injection.This issue affects WC Price History for Omnibus: from n/a through 2.1.4.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2025-22510
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3336
|
- |
|
-
|
-
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Roninwp FAT Event Lite allows PHP Local File Inclusion.This issue affects FAT …
|
CWE-98
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
|
CVE-2025-22508
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3337
|
- |
|
-
|
-
|
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Nabaraj Chapagain NC Wishlist for Woocommerce allows SQL Injection.This issue affects NC Wishlist…
|
CWE-89
SQL Injection
|
CVE-2025-22505
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3338
|
- |
|
-
|
-
|
Unrestricted Upload of File with Dangerous Type vulnerability in jumpdemand 4ECPS Web Forms allows Upload a Web Shell to a Web Server.This issue affects 4ECPS Web Forms: from n/a through 0.2.18.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2025-22504
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3339
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Opentracker Opentracker Analytics allows Reflected XSS.This issue affects Opentracker Analytics: …
|
CWE-79
Cross-site Scripting
|
CVE-2025-22361
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
3340
|
- |
|
-
|
-
|
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tobias Spiess TS Comfort DB allows Reflected XSS.This issue affects TS Comfort DB: from n/a throu…
|
CWE-79
Cross-site Scripting
|
CVE-2025-22345
|
2025-01-10 01:16 |
2025-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|