CVE-2024-13640 – WooCommerce Print Invoice & Delivery Notes Sensitive Information Exposure

The following table lists the changes that have been made to the CVE-2024-13640 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]

CVE-2025-1504 – WordPress Post Lockdown Plugin Information Exposure Vulnerability

The Post Lockdown plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 4.0.2 via the ‘pl_autocomplete’ AJAX action due to insufficient restrictions on which posts can be included. This makes it possible for authenticated attackers, with Subscriber-level access and above, to extract data from password protected, private, or draft […]

CVE-2025-1481 – WordPress Shortcode Cleaner Lite Unauthorized Data Access Vulnerability

The following table lists the changes that have been made to the CVE-2025-1481 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]

CVE-2024-13895 – WordPress Code Snippets CPT Plugin Remote Code Execution Vulnerability

The following table lists the changes that have been made to the CVE-2024-13895 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]

CVE-2024-13890 – WordPress Allow PHP Execute Plugin PHP Code Injection

The following table lists the changes that have been made to the CVE-2024-13890 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]

CVE-2024-13835 – WordPress Post Meta Data Manager Multisite Privilege Escalation Vulnerability

The following table lists the changes that have been made to the CVE-2024-13835 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]

CVE-2024-13774 – WooCommerce Multi Wishlists Per Customer CSRF

The following table lists the changes that have been made to the CVE-2024-13774 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]

CVE-2024-12460 – WordPress Timeless Texts Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2024-12460 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]

CVE-2025-1261 – “HT Mega – Absolute Addons For Elementor DOM-Based Stored XSS”

CVE ID : CVE-2025-1261 Published : March 8, 2025, 2:15 a.m. | 1 hour, 8 minutes ago Description : The HT Mega – Absolute Addons For Elementor plugin for WordPress is vulnerable to DOM-Based Stored Cross-Site Scripting via the plugin’s Countdown widget in all versions up to, and including, 2.8.2 due to insufficient input sanitization and output […]

CVE-2025-27839 – Tangem SDK Offline Wallet Attestation Verification Bypass

The following table lists the changes that have been made to the CVE-2025-27839 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 08, 2025 Action […]