CVE-2025-4607 – “PSW Front-end Login & Registration WordPress Privilege Escalation”

The PSW Front-end Login & Registration plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.12 via the customer_registration() function. This is due to the use of a weak, low-entropy OTP mechanism in the forget() function. This makes it possible for unauthenticated attackers to initiate a password reset for […]

CVE-2025-4595 – FastSpring for WordPress Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-4595 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 31, 2025 Action […]

CVE-2025-4590 – Daisycon prijsvergelijkers WordPress Stored Cross-Site Scripting Vulnerability

The following table lists the changes that have been made to the CVE-2025-4590 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 31, 2025 Action […]

CVE-2025-4103 – WordPress WP-GeoMeta Privilege Escalation Vulnerability

The following table lists the changes that have been made to the CVE-2025-4103 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 31, 2025 Action […]

Kritieke beveiligingslekken in forumsoftware vBulletin actief misbruikt

Kritieke beveiligingslekken in forumsoftware vBulletin actief misbruikt Aanvallers maken actief misbruik van twee kritieke kwetsbaarheden in de populaire forumsoftware vBulletin, zo melden het Amerikaanse National Institute of Standards and Technology (NIST), Qualys en KE … Read more Published Date: May 31, 2025 (3 hours, 44 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-48828 CVE-2025-48827

CVE-2025-5370 – PHPGurukul News Portal SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-5370 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 31, 2025 Action […]

CVE-2025-5369 – SourceCodester PHP Display Username After Login SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-5369 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 31, 2025 Action […]

CVE-2025-5368 – PHPGurukul Daily Expense Tracker System SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-5368 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] May. 31, 2025 Action […]

CVE-2025-5016 – Relevanssi WordPress Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-5016 Published : May 31, 2025, 4:15 a.m. | 26 minutes ago Description : The Relevanssi – A Better Search plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Excerpt Highlights in all versions up to, and including, 4.24.5 (Free) and 2.27.6 (Premium) due to insufficient input sanitization and output escaping. […]

CVE-2025-40909: Perl Threads Vulnerability Exposes File Operation Race Condition

CVE-2025-40909: Perl Threads Vulnerability Exposes File Operation Race Condition A newly disclosed vulnerability in Perl’s threading mechanism, tracked as CVE-2025-40909, exposes systems to race conditions involving the working directory, potentially enabling local attackers to ma … Read more Published Date: May 31, 2025 (1 hour, 42 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-40909 CVE-2025-48912 […]