CVE Alert: CVE-2024-12612
Vulnerability Summary: CVE-2024-12612 The School Management System for Wordpress plugin for WordPress is vulnerable to SQL Injection via several parameters...
Vulnerability Summary: CVE-2024-12612 The School Management System for Wordpress plugin for WordPress is vulnerable to SQL Injection via several parameters...
Vulnerability Summary: CVE-2024-8393 The Woocommerce Blocks – Woolook plugin for WordPress is vulnerable to Local File Inclusion in all versions...
Vulnerability Summary: CVE-2024-12575 The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to Basic...
Vulnerability Summary: CVE-2025-7439 Anber Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the $anber_item’ parameter in...
Vulnerability Summary: CVE-2025-6221 The Embed Bokun plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ parameter in...
Vulnerability Summary: CVE-2025-7441 The StoryChief plugin for WordPress is vulnerable to arbitrary file uploads in all versions up to, and...
Vulnerability Summary: CVE-2025-6079 The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to...
Vulnerability Summary: CVE-2025-7440 The Anber Elementor Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the $item parameter...
Vulnerability Summary: CVE-2025-7664 The AL Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability check...
Vulnerability Summary: CVE-2025-7649 The Surbma | Recent Comments Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the...
Vulnerability Summary: CVE-2025-7668 The Linux Promotional Plugin plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up...
Vulnerability Summary: CVE-2025-7683 The LatestCheckins plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and...
Vulnerability Summary: CVE-2025-7651 The Earnware Connect plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ew_hasrole' shortcode...
Vulnerability Summary: CVE-2025-7686 The weichuncai(WP伪春菜) plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and...
Vulnerability Summary: CVE-2025-8293 The Intl DateTime Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘date’ parameter...
Vulnerability Summary: CVE-2025-7684 The Last.fm Recent Album Artwork plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions...
Vulnerability Summary: CVE-2025-8896 The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for...
Vulnerability Summary: CVE-2025-8089 The Advanced iFrame plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'additional' parameter in...
OPINION From desktop alerts begging you to sign up for Xbox Game Pass to a second-chance out-of-the-box experience that insists...
Feature The UK government has gone all-in on AI. More than 50 years after Harold Wilson gave his famous "White...
Vulnerability Summary: CVE-2025-7499 The BetterDocs – Advanced AI-Driven Documentation, FAQ & Knowledge Base Tool for Elementor & Gutenberg with Encyclopedia,...
Vulnerability Summary: CVE-2025-8464 The Drag and Drop Multiple File Upload for Contact Form 7 plugin for WordPress is vulnerable to...
Vulnerability Summary: CVE-2025-8143 The Soledad theme for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘pcsml_smartlists_h’ parameter in all...
Vulnerability Summary: CVE-2025-8719 The Translate This gTranslate Shortcode plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘base_lang’...