Aggregator
时代终结:微软替换标志性“蓝屏死机”界面
8 months ago
安全客
CVE-2025-36038:IBM WebSphere 应用服务器曝出严重远程代码执行(RCE)漏洞
8 months ago
安全客
CVE-2025-24771 | Content Manager Light Plugin up to 3.2 on WordPress cross site scripting
8 months ago
A vulnerability has been found in Content Manager Light Plugin up to 3.2 on WordPress and classified as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-24771. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-39362 | Mollie Payments for WooCommerce Plugin up to 8.0.2 on WordPress resource injection (EUVD-2025-19708)
8 months ago
A vulnerability, which was classified as critical, was found in Mollie Payments for WooCommerce Plugin up to 8.0.2 on WordPress. This affects an unknown part. The manipulation leads to improper control of resource identifiers.
This vulnerability is uniquely identified as CVE-2025-39362. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-39487 | Rankie Plugin up to 1.8.2 on WordPress cross site scripting
8 months ago
A vulnerability, which was classified as problematic, has been found in Rankie Plugin up to 1.8.2 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-39487. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-52776 | Video List Manager Plugin up to 1.7 on WordPress cross site scripting
8 months ago
A vulnerability classified as problematic was found in Video List Manager Plugin up to 1.7 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-52776. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-28978 | SB Breadcrumbs Plugin up to 1.0 on WordPress cross site scripting
8 months ago
A vulnerability classified as problematic has been found in SB Breadcrumbs Plugin up to 1.0 on WordPress. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2025-28978. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
关键 Sudo 漏洞(CVE-2025-32463,CVSS 9.3):可实现本地提权与主机访问绕过,已有 PoC 公布
8 months ago
安全客
CVE-2025-49247 | Team Showcase Plugin up to 25.05.12 on WordPress cross site scripting
8 months ago
A vulnerability was found in Team Showcase Plugin up to 25.05.12 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-49247. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-32311 | Pressroom Theme up to 6.9 on WordPress cross site scripting
8 months ago
A vulnerability was found in Pressroom Theme up to 6.9 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-32311. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-28968 | WP Wall Plugin up to 1.7.3 on WordPress cross site scripting
8 months ago
A vulnerability was found in WP Wall Plugin up to 1.7.3 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-28968. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-31037 | Homey Plugin up to 2.4.5 on WordPress cross site scripting
8 months ago
A vulnerability has been found in Homey Plugin up to 2.4.5 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-31037. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-52798 | JobSearch Plugin up to 2.9.0 on WordPress cross site scripting
8 months ago
A vulnerability was found in JobSearch Plugin up to 2.9.0 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-52798. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-50039 | VG WORT METIS Plugin up to 2.0.0 on WordPress authorization
8 months ago
A vulnerability, which was classified as critical, was found in VG WORT METIS Plugin up to 2.0.0 on WordPress. Affected is an unknown function. The manipulation leads to missing authorization.
This vulnerability is traded as CVE-2025-50039. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2025-52796 | WP-Recall Plugin up to 16.26.14 on WordPress cross site scripting
8 months ago
A vulnerability, which was classified as problematic, has been found in WP-Recall Plugin up to 16.26.14 on WordPress. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-52796. The attack may be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-5692 | Lead Form Data Collection to CRM Plugin up to 3.1 on WordPress Setting doFieldAjaxAction improper authentication
8 months ago
A vulnerability classified as critical was found in Lead Form Data Collection to CRM Plugin up to 3.1 on WordPress. This vulnerability affects the function doFieldAjaxAction of the component Setting Handler. The manipulation leads to improper authentication.
This vulnerability was named CVE-2025-5692. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-52828 | Red Art Theme up to 3.7 on WordPress deserialization
8 months ago
A vulnerability was found in Red Art Theme up to 3.7 on WordPress. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to deserialization.
This vulnerability is handled as CVE-2025-52828. The attack may be launched remotely. There is no exploit available.
vuldb.com
CVE-2025-49274 | Neom Blog Theme up to 0.0.9 on WordPress cross site scripting
8 months ago
A vulnerability classified as problematic has been found in Neom Blog Theme up to 0.0.9 on WordPress. This affects an unknown part. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-49274. It is possible to initiate the attack remotely. There is no exploit available.
vuldb.com
美国国务院人事变动引发网络外交风险
8 months ago
安全客