CVE-2025-4579 – WordPress Content Security Plugin Stored Cross-Site Scripting

CVE ID : CVE-2025-4579 Published : May 15, 2025, 2:15 a.m. | 56 minutes ago Description : The WP Content Security Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the blocked-uri and effective-directive parameters in all versions up to, and including, 2.3 due to insufficient input sanitization and output escaping. This makes it […]

CVE-2025-46836 – Net-tools Unvalidated Stack Buffer Overflow

The following table lists the changes that have been made to the CVE-2025-46836 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2025-47783 – Label Studio Cross-Site Scripting (XSS)

Label Studio is a multi-type data labeling and annotation tool. A vulnerability in versions prior to 1.18.0 allows an attacker to inject a malicious script into the context of a web page, which can lead to data theft, session hijacking, unauthorized actions on behalf of the user, and other attacks. The vulnerability is reproducible when […]

CVE-2025-32421 – Next.js Race Condition Page Prop Exposure

The following table lists the changes that have been made to the CVE-2025-32421 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]

CVE-2024-45067 – Intel Gaudi Privilege Escalation

The following table lists the changes that have been made to the CVE-2024-45067 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 14, 2025 Action […]