CVE-2025-24779 – NooTheme Yogi Deserialization of Untrusted Data Object Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-24779 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]
CVE-2024-9408 – Eclipse GlassFish Server Side Request Forgery Vulnerability
The following table lists the changes that have been made to the CVE-2024-9408 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. Initial Analysis by [email protected] Jul. 16, 2025 Action Type […]
CVE-2025-24759 – WordPress Business Directory Plugins SQL Injection Vulnerability
The following table lists the changes that have been made to the CVE-2025-24759 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]
Vim Command Line Text Editor Vulnerability Let Attackers Overwrite Sensitive Files
Vim Command Line Text Editor Vulnerability Let Attackers Overwrite Sensitive Files A critical security vulnerability has been discovered in Vim, the popular open-source command line text editor used by millions of developers worldwide. The vulnerability, designated as CVE-2025-53906 … Read more Published Date: Jul 16, 2025 (1 hour, 31 minutes ago) Vulnerabilities has been mentioned in this […]
CVE-2025-54026 – QuanticaLabs GymBase Theme Classes SQL Injection
The following table lists the changes that have been made to the CVE-2025-54026 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]
CVE-2025-54010 – Shahjahan Jewel FluentSnippets CSRF Vulnerability
The following table lists the changes that have been made to the CVE-2025-54010 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]
CVE-2025-7699 – ADM EZ Sync Manager Unauthenticated File Access Vulnerability
The following table lists the changes that have been made to the CVE-2025-7699 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 16, 2025 Action […]
CVE-2025-6993 – WordPress WP Mail Privilege Escalation Vulnerability
CVE ID : CVE-2025-6993 Published : July 16, 2025, 10:15 a.m. | 1 hour, 1 minute ago Description : The Ultimate WP Mail plugin for WordPress is vulnerable to Privilege Escalation due to improper authorization within the get_email_log_details() AJAX handler in versions 1.0.17 to 1.3.6. The handler reads the client-supplied post_id and retrieves the corresponding email log […]
CVE-2025-5284 – Elementor Addons – Stored Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-5284 Published : July 16, 2025, 10:15 a.m. | 1 hour, 1 minute ago Description : The Master Addons – Elementor Addons with White Label, Free Widgets, Hover Effects, Conditions, & Animations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Custom JS extension in all versions up to, and including, 2.0.8.2 […]
CVE-2025-7035 – WordPress Media Library Assistant Stored XSS
CVE ID : CVE-2025-7035 Published : July 16, 2025, 10:15 a.m. | 1 hour, 1 minute ago Description : The Media Library Assistant plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin’s mla_tag_cloud and mla_term_list shortcodes in all versions up to, and including, 3.26 due to insufficient input sanitization and output escaping on user […]