CVE-2025-0961 – Code-projects Job Recruitment Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-0961 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2025-0950 – iSourcecode Tailoring Management System SQL Injection

The following table lists the changes that have been made to the CVE-2025-0950 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2025-0949 – iSourcecode Tailoring Management System SQL Injection Critical

The following table lists the changes that have been made to the CVE-2025-0949 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2025-0948 – iSourcecode Tailoring Management System SQL Injection

The following table lists the changes that have been made to the CVE-2025-0948 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2025-0947 – ITSourcecode Tailoring Management System SQL Injection

The following table lists the changes that have been made to the CVE-2025-0947 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2025-0946 – itsourcecode Tailoring Management System SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-0946 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2025-0945 – iSourcecode Tailoring Management System SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-0945 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2025-0944 – Tailoring Management System SQL Injection

The following table lists the changes that have been made to the CVE-2025-0944 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 01, 2025 Action […]

CVE-2024-13775 – WooCommerce Support Ticket System for WordPress Unauthorized Access and Data Loss Vulnerability

The WooCommerce Support Ticket System plugin for WordPress is vulnerable to unauthorized access and loss of data due to missing capability checks on the ‘ajax_delete_message’, ‘ajax_get_customers_partial_list’, and ‘ajax_get_admins_list’ functions in all versions up to, and including, 17.8. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete arbitrary posts, and read […]

CVE-2024-13612 – Better Messages WordPress Cross-Site Scripting (XSS)

The Better Messages – Live Chat for WordPress, BuddyPress, PeepSo, Ultimate Member, BuddyBoss plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s ‘better_messages_live_chat_button’ shortcode in all versions up to, and including, 2.6.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with […]