CVE-2025-24779 – NooTheme Yogi Deserialization of Untrusted Data Object Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-24779 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]

CVE-2024-9408 – Eclipse GlassFish Server Side Request Forgery Vulnerability

The following table lists the changes that have been made to the CVE-2024-9408 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. Initial Analysis by [email protected] Jul. 16, 2025 Action Type […]

CVE-2025-24759 – WordPress Business Directory Plugins SQL Injection Vulnerability

The following table lists the changes that have been made to the CVE-2025-24759 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]

Vim Command Line Text Editor Vulnerability Let Attackers Overwrite Sensitive Files

Vim Command Line Text Editor Vulnerability Let Attackers Overwrite Sensitive Files A critical security vulnerability has been discovered in Vim, the popular open-source command line text editor used by millions of developers worldwide. The vulnerability, designated as CVE-2025-53906 … Read more Published Date: Jul 16, 2025 (1 hour, 31 minutes ago) Vulnerabilities has been mentioned in this […]

CVE-2025-54026 – QuanticaLabs GymBase Theme Classes SQL Injection

The following table lists the changes that have been made to the CVE-2025-54026 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]

CVE-2025-54010 – Shahjahan Jewel FluentSnippets CSRF Vulnerability

The following table lists the changes that have been made to the CVE-2025-54010 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]

CVE-2025-7699 – ADM EZ Sync Manager Unauthenticated File Access Vulnerability

The following table lists the changes that have been made to the CVE-2025-7699 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]

CVE-2025-6993 – WordPress WP Mail Privilege Escalation Vulnerability

CVE ID : CVE-2025-6993 Published : July 16, 2025, 10:15 a.m. | 1 hour, 1 minute ago Description : The Ultimate WP Mail plugin for WordPress is vulnerable to Privilege Escalation due to improper authorization within the get_email_log_details() AJAX handler in versions 1.0.17 to 1.3.6. The handler reads the client-supplied post_id and retrieves the corresponding email log […]

CVE-2025-5284 – Elementor Addons – Stored Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-5284 Published : July 16, 2025, 10:15 a.m. | 1 hour, 1 minute ago Description : The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, & Animations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom JS extension in all versions up to, and including, 2.0.8.2 […]

CVE-2025-7035 – WordPress Media Library Assistant Stored XSS

CVE ID : CVE-2025-7035 Published : July 16, 2025, 10:15 a.m. | 1 hour, 1 minute ago Description : The Media Library Assistant plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s mla_tag_cloud and mla_term_list shortcodes in all versions up to, and including, 3.26 due to insufficient input sanitization and output escaping on user […]