CVE-2025-27574 – HGW-BL1500HM Cross-Site Scripting (XSS)
The following table lists the changes that have been made to the CVE-2025-27574 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 28, 2025 Action […]
CVE-2025-27567 – HGW-BL1500HM Cross-Site Scripting
The following table lists the changes that have been made to the CVE-2025-27567 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 28, 2025 Action […]
CVE-2025-1705 – TagDiv Composer WordPress CSRF
CVE ID : CVE-2025-1705 Published : March 28, 2025, 9:15 a.m. | 1 hour, 29 minutes ago Description : The tagDiv Composer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.3. This is due to missing or incorrect nonce validation within the td_ajax_get_views AJAX action. This makes it possible […]
Firefox Patch Released as Mozilla Addresses Chrome-Like Security Threat
Firefox Patch Released as Mozilla Addresses Chrome-Like Security Threat Mozilla has issued an urgent update for Firefox on Windows to patch a critical security vulnerability. This Firefox vulnerability move follows the recent discovery of a similar exploit in Google Chrom … Read more Published Date: Mar 28, 2025 (2 hours, 46 minutes ago) Vulnerabilities has been mentioned […]
Mozilla Releases Urgent Patch for Windows Users Following Recently Exploited Chrome Zero-day
Mozilla Releases Urgent Patch for Windows Users Following Recently Exploited Chrome Zero-day Mozilla has released an emergency security update for its Firefox browser on Windows systems to address a critical vulnerability that could allow attackers to escape browser sandboxes and potentially … Read more Published Date: Mar 28, 2025 (3 hours, 13 minutes ago) Vulnerabilities has been […]
CVE-2025-2578 – Booking for Appointments and Events Calendar Amelia WordPress Full Path Disclosure
CVE ID : CVE-2025-2578 Published : March 28, 2025, 8:15 a.m. | 29 minutes ago Description : The Booking for Appointments and Events Calendar – Amelia plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.2.19 via the ‘wpAmeliaApiCall’ function. This makes it possible for unauthenticated attackers to retrieve […]
CVE-2025-2074 – Google reCAPTCHA WordPress SQL Injection Vulnerability
CVE ID : CVE-2025-2074 Published : March 28, 2025, 8:15 a.m. | 29 minutes ago Description : The Advanced Google reCAPTCHA plugin for WordPress is vulnerable to generic SQL Injection via the ‘sSearch’ parameter in all versions up to, and including, 1.29 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation […]
CISA Issues Urgent Security Alerts: Critical Vulnerabilities in Schneider Electric, Chrome, and Sitecore
CISA Issues Urgent Security Alerts: Critical Vulnerabilities in Schneider Electric, Chrome, and Sitecore The Cybersecurity and Infrastructure Security Agency (CISA) has released several important security advisories, which address critical vulnerabilities across a range of platforms, including industrial … Read more Published Date: Mar 28, 2025 (2 hours, 7 minutes ago) Vulnerabilities has been mentioned in this article.
CVE-2025-2485 – WordPress Contact Form 7 Drag and Drop Multiple File Upload PHP Object Injection Vulnerability
CVE ID : CVE-2025-2485 Published : March 28, 2025, 7:15 a.m. | 1 hour, 29 minutes ago Description : The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.3.8.7 via deserialization of untrusted input from the ‘dnd_upload_cf7_upload’ function. This […]
CVE-2025-2328 – WordPress Contact Form 7 Drag and Drop Multiple File Upload Unvalidated File Path Deletion Vulnerability
The following table lists the changes that have been made to the CVE-2025-2328 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Mar. 28, 2025 Action […]