CVE-2024-13585 – Ajax Search Lite WordPress Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2024-13585 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]

CVE-2024-13314 – WP Carousel Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2024-13314 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]

CVE-2024-11260 – WordPress Events Manager SQL Injection

The Events Manager – Calendar, Bookings, Tickets, and more! plugin for WordPress is vulnerable to time-based SQL Injection via the active_status parameter in all versions up to, and including, 6.6.3 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated […]

MitM attack against OpenSSH’s VerifyHostKeyDNS-enabled client

MitM attack against OpenSSH’s VerifyHostKeyDNS-enabled client Full Disclosure mailing list archives From: Qualys Security Advisory via Fulldisclosure Date: Tue, 18 Feb 2025 10:28:30 +0000 Qualys Security Advisory CVE-2025-26465: … Read more Published Date: Feb 21, 2025 (2 hours, 32 minutes ago) Vulnerabilities has been mentioned in this article.

CVE-2025-1407 – WordPress AMO Team Showcase Plugin Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-1407 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]

CVE-2025-1406 – WordPress Newpost Catch Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-1406 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]

CVE-2024-13883 – WordPress WPUpper Share Buttons CSRF

The following table lists the changes that have been made to the CVE-2024-13883 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]

CVE-2024-13818 – WordPress Registration Forms Sensitive Information Exposure

The Registration Forms – User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form & Content Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.8.3.9 through publicly exposed log files. This makes it possible for unauthenticated attackers to view potentially sensitive information about users contained in […]

CVE-2024-13751 – WordPress 3D Photo Gallery Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2024-13751 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]

CVE-2024-13672 – WordPress Mini Course Generator Stored Cross-Site Scripting

The following table lists the changes that have been made to the CVE-2024-13672 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Feb. 21, 2025 Action […]