CVE-2025-7504 – WordPress Friends Plugin PHP Object Injection Vulnerability

CVE ID : CVE-2025-7504 Published : July 12, 2025, 9:15 a.m. | 28 minutes ago Description : The Friends plugin for WordPress is vulnerable to PHP Object Injection in version 3.5.1 via deserialization of untrusted input of the query_vars parameter This makes it possible for authenticated attackers, with subscriber-level access and above, to inject a PHP […]

CVE-2025-7468 – “Tenda FH1201 HTTP POST Request Handler Buffer Overflow”

The following table lists the changes that have been made to the CVE-2025-7468 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]

CVE-2025-7467 – “Modern Bag SQL Injection Vulnerability”

The following table lists the changes that have been made to the CVE-2025-7467 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]

CVE-2025-7466 – ABC Courier Management SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-7466 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]

CVE-2025-6423 – BeeTeam368 Extensions WordPress Arbitrary File Upload Vulnerability

The following table lists the changes that have been made to the CVE-2025-6423 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]

CVE-2025-7465 – Tenda FH1201 HTTP POST Request Handler Buffer Overflow

The following table lists the changes that have been made to the CVE-2025-7465 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]

CVE-2025-7464 – GoBGP Out-of-Bounds Read Vulnerability

The following table lists the changes that have been made to the CVE-2025-7464 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]

CVE-2025-7462 – Artifex GhostPDL Remote Null Pointer Dereference Vulnerability

The following table lists the changes that have been made to the CVE-2025-7462 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]

CVE-2025-1313 – Nokri – Job Board WordPress Theme Privilege Escalation Vulnerability

The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 1.6.3. This is due to the plugin not properly validating a user’s identity prior to updating their details like email address. This makes it possible for authenticated attackers, with Subscriber-level […]

CVE-2025-7463 – Tenda FH1201 HTTP POST Request Handler Buffer Overflow Vulnerability

The following table lists the changes that have been made to the CVE-2025-7463 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 12, 2025 Action […]