CVE-2023-52971 – MariaDB Server JOIN Rewrite Vulnerability
The following table lists the changes that have been made to the CVE-2023-52971 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]
CVE-2023-52970 – MariaDB Server Item Direct View Ref Crash
The following table lists the changes that have been made to the CVE-2023-52970 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]
CVE-2023-52969 – MariaDB Server Crashable Backtrace Log
The following table lists the changes that have been made to the CVE-2023-52969 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]
CVE-2023-52968 – MariaDB Server SQL Injection
MariaDB Server 10.4 before 10.4.33, 10.5 before 10.5.24, 10.6 before 10.6.17, 10.7 through 10.11 before 10.11.7, 11.0 before 11.0.5, and 11.1 before 11.1.4 calls fix_fields_if_needed under mysql_derived_prepare when derived is not yet prepared, leading to a find_field_in_table crash.
CVE-2025-2112 – Yaoqishan JavaEx SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-2112 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]
CVE-2025-27840 – Espressif ESP32 HCI Command Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-27840 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]
CVE-2024-13924 – FancyWP WordPress Blind Server-Side Request Forgery Vulnerability
CVE ID : CVE-2024-13924 Published : March 8, 2025, 1:15 p.m. | 29 minutes ago Description : The Starter Templates by FancyWP plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and including, 2.0.0 via the ‘http_request_host_is_external’ filter. This makes it possible for unauthenticated attackers to make web requests to […]
CVE-2024-10326 – Elementor RomethemeKit WordPress Unauthenticated Data Modification Vulnerability
CVE ID : CVE-2024-10326 Published : March 8, 2025, 1:15 p.m. | 29 minutes ago Description : The RomethemeKit For Elementor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_options and reset_widgets functions in all versions up to, and including, 1.5.3. This makes it possible for […]
CVE-2025-1664 – WordPress Gutenberg Blocks, Patterns & Templates Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-1664 Published : March 8, 2025, 12:15 p.m. | 1 hour, 28 minutes ago Description : The Essential Blocks – Page Builder Gutenberg Blocks, Patterns & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Parallax slider in all versions up to, and including, 5.3.1 due to insufficient input sanitization and […]
CVE-2024-13675 – FunnelKit (WooFunnels) SlingBlocks Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-13675 Published : March 8, 2025, 12:15 p.m. | 1 hour, 28 minutes ago Description : The SlingBlocks – Gutenberg Blocks by FunnelKit (Formerly WooFunnels) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the “Icon List” Block in all versions up to, and including, 1.5.0 due to insufficient input sanitization and output […]