CVE-2025-1512 – Elementor PowerPack Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-1512 Published : April 1, 2025, 7:15 a.m. | 2 hours, 8 minutes ago Description : The PowerPack Elementor Addons (Free Widgets, Extensions and Templates) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom Cursor Extension in all versions up to, and including, 2.9.0 due to insufficient input sanitization and output […]
CVE-2025-1267 – Groundhogg for WordPress Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-1267 Published : April 1, 2025, 7:15 a.m. | 2 hours, 8 minutes ago Description : The Groundhogg plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘label’ parameter in versions up to, and including, 3.7.4.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with […]
CVE-2024-12278 – Booster for WooCommerce Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-12278 Published : April 1, 2025, 7:15 a.m. | 2 hours, 8 minutes ago Description : The Booster for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via any location that typically sanitizes data using wp_kses, like comments, in all versions up to, and including, 7.2.5 due to insufficient input sanitization and […]
CVE-2024-12189 – WDesignKit WordPress Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2024-12189 Published : April 1, 2025, 7:15 a.m. | 2 hours, 8 minutes ago Description : The WDesignKit – Elementor & Gutenberg Starter Templates, Patterns, Cloud Workspace & Widget Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via custom widgets in all versions up to, and including, 1.2.2 due to insufficient input […]
CVE-2025-31415 – YayCommerce YayExtra Missing Authorization Vulnerability
The following table lists the changes that have been made to the CVE-2025-31415 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 01, 2025 Action […]
CVE-2025-31095 – Ho3einie Material Dashboard Authentication Bypass
The following table lists the changes that have been made to the CVE-2025-31095 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 01, 2025 Action […]
CVE-2025-31087 – Silverplugins217 Woocommerce Object Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-31087 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 01, 2025 Action […]
CVE-2025-31084 – Sunshine Photo Cart Object Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-31084 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 01, 2025 Action […]
CVE-2025-31409 – NotFound Bridge Core Cross-site Scripting (XSS)
The following table lists the changes that have been made to the CVE-2025-31409 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 01, 2025 Action […]
CVE-2025-31074 – MDJM Event Management Object Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-31074 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Apr. 01, 2025 Action […]