CVE-2024-13805 – WordPress Advanced File Manager Stored Cross-Site Scripting

CVE ID : CVE-2024-13805 Published : March 7, 2025, 10:15 a.m. | 37 minutes ago Description : The Advanced File Manager — Ultimate WordPress File Manager and Document Library Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 5.2.14 due to insufficient input sanitization […]

CVE-2024-13857 – WordPress WPGet API Server-Side Request Forgery Vulnerability

CVE ID : CVE-2024-13857 Published : March 7, 2025, 10:15 a.m. | 37 minutes ago Description : The WPGet API – Connect to any external REST API plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.2.10. This makes it possible for authenticated attackers, with Administrator-level access and above, […]

CVE-2024-13635 – “WordPress VK Blocks Sensitive Information Exposure”

CVE ID : CVE-2024-13635 Published : March 7, 2025, 10:15 a.m. | 37 minutes ago Description : The VK Blocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.94.2.2 via the page content block. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract […]

CVE-2025-21843 – Linux Kernel Panthor Uninitialized Data Use

The following table lists the changes that have been made to the CVE-2025-21843 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Mar. 07, 2025 Action […]

CVE-2025-21841 – AMD P-State Kernel Reference Counting Vulnerability

The following table lists the changes that have been made to the CVE-2025-21841 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Mar. 07, 2025 Action […]

CVE-2025-21842 – AMD KFD Use-After-Free Buffer Overflow

The following table lists the changes that have been made to the CVE-2025-21842 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by 416baaa9-dc9f-4396-8d5f-8c081fb06d67 Mar. 07, 2025 Action […]

CVE-2025-21840 – Intel LPMD Thermal Netlink Integer Underflow Vulnerability

In the Linux kernel, the following vulnerability has been resolved: thermal/netlink: Prevent userspace segmentation fault by adjusting UAPI header The intel-lpmd tool [1], which uses the THERMAL_GENL_ATTR_CPU_CAPABILITY attribute to receive HFI events from kernel space, encounters a segmentation fault after commit 1773572863c4 (“thermal: netlink: Add the commands and the events for the thresholds”). The issue […]