CVE-2025-0390 – Guangzhou Huayi Intelligent Technology Jeewms Path Traversal Vuln

The following table lists the changes that have been made to the CVE-2025-0390 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 11, 2025 Action […]

CVE-2024-42175 – HCL MyXalytics Weak Input Validation Remote Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2024-42175 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jan. 11, 2025 Action […]

CVE-2024-12527 – “WordPress Perfect Portal Widgets Stored Cross-Site Scripting”

CVE ID : CVE-2024-12527 Published : Jan. 11, 2025, 8:15 a.m. | 33 minutes ago Description : The Perfect Portal Widgets plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘perfect_portal_intake_form’ shortcode in all versions up to, and including, 3.0.3 due to insufficient input sanitization and output escaping on user supplied attributes. This […]

CVE-2024-12519 – “WordPress TCBD Auto Refresher Stored XSS”

CVE ID : CVE-2024-12519 Published : Jan. 11, 2025, 8:15 a.m. | 33 minutes ago Description : The TCBD Auto Refresher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘tcbd_auto_refresh’ shortcode in all versions up to, and including, 2.0 due to insufficient input sanitization and output escaping on user supplied attributes. This […]

CVE-2024-12116 – Elementor WooCommerce Unlimited Theme Addon Information Exposure

CVE ID : CVE-2024-12116 Published : Jan. 11, 2025, 8:15 a.m. | 33 minutes ago Description : The Unlimited Theme Addon For Elementor and WooCommerce plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.2.1 via the ‘uta-template’ shortcode due to insufficient restrictions on which posts can be included. This […]

CVE-2024-11915 – Elementor RRAddons WordPress Information Exposure Vulnerability

CVE ID : CVE-2024-11915 Published : Jan. 11, 2025, 8:15 a.m. | 33 minutes ago Description : The RRAddons for Elementor plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.1.0 via the Popup block due to insufficient restrictions on which posts can be included. This makes it possible for […]