CVE-2025-2561 – Ninja Forms Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2561 Published : May 19, 2025, 6:15 a.m. | 56 minutes ago Description : The Ninja Forms WordPress plugin before 3.10.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for […]

CVE-2025-2560 – Ninja Forms Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2560 Published : May 19, 2025, 6:15 a.m. | 56 minutes ago Description : The Ninja Forms WordPress plugin before 3.10.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for […]

CVE-2025-2524 – Ninja Forms WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2524 Published : May 19, 2025, 6:15 a.m. | 56 minutes ago Description : The Ninja Forms WordPress plugin before 3.10.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for […]

CVE-2025-1627 – Qi Blocks WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-1627 Published : May 19, 2025, 6:15 a.m. | 56 minutes ago Description : The Qi Blocks WordPress plugin before 1.4 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above […]

CVE-2025-1626 – Qi Blocks WordPress Stored Cross-Site Scripting (XSS)

CVE ID : CVE-2025-1626 Published : May 19, 2025, 6:15 a.m. | 56 minutes ago Description : The Qi Blocks WordPress plugin before 1.4 does not validate and escape some of its Countdown block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and […]

CVE-2025-1625 – Qi Blocks WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-1625 Published : May 19, 2025, 6:15 a.m. | 56 minutes ago Description : The Qi Blocks WordPress plugin before 1.4 does not validate and escape some of its Counter block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and […]

CVE-2025-4911 – A vulnerability, which was classified as critical,

The following table lists the changes that have been made to the CVE-2025-4911 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-4912 – SourceCodester Student Result Management System Image File Handler Remote Path Traversal Vulnerability

The following table lists the changes that have been made to the CVE-2025-4912 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-2892 – WordPress All in One SEO Plugin Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-2892 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]

CVE-2025-4910 – PHPGurukul Zoo Management System SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-4910 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 19, 2025 Action […]