CVE Alert: CVE-2025-22291
Vulnerability Summary: CVE-2025-22291 Missing Authorization vulnerability in enituretechnology LTL Freight Quotes – Worldwide Express Edition allows Exploiting Incorrectly Configured Access...
Vulnerability Summary: CVE-2025-22291 Missing Authorization vulnerability in enituretechnology LTL Freight Quotes – Worldwide Express Edition allows Exploiting Incorrectly Configured Access...
Vulnerability Summary: CVE-2025-1360 A vulnerability, which was classified as problematic, was found in Internet Web Solutions Sublime CRM up to...
Vulnerability Summary: CVE-2025-22289 Missing Authorization vulnerability in NotFound LTL Freight Quotes – Unishippers Edition allows Exploiting Incorrectly Configured Access Control...
Vulnerability Summary: CVE-2025-22286 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in enituretechnology LTL Freight Quotes –...
Vulnerability Summary: CVE-2025-26761 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HashThemes Easy Elementor Addons allows...
Vulnerability Summary: CVE-2025-26759 Cross-Site Request Forgery (CSRF) vulnerability in alexvtn Content Snippet Manager allows Stored XSS. This issue affects Content...
Vulnerability Summary: CVE-2025-1364 A vulnerability has been found in MicroWord eScan Antivirus 7.0.32 on Linux and classified as critical. Affected...
Vulnerability Summary: CVE-2025-22284 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in enituretechnology LTL Freight Quotes –...
Vulnerability Summary: CVE-2025-22689 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Levan Tarbor Forex Calculators allows...
Vulnerability Summary: CVE-2025-22680 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Ad Inserter Pro allows...
Vulnerability Summary: CVE-2025-22676 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in upcasted AWS S3 for WordPress...
Vulnerability Summary: CVE-2025-26755 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in jgwhite33 WP Airbnb...
Vulnerability Summary: CVE-2025-23975 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Botnet Attack Blocker allows...
Vulnerability Summary: CVE-2025-26767 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum Qubely – Advanced Gutenberg...
Vulnerability Summary: CVE-2025-26766 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VaultDweller Leyka allows Stored XSS....
Vulnerability Summary: CVE-2025-26768 Cross-Site Request Forgery (CSRF) vulnerability in what3words what3words Address Field allows Stored XSS. This issue affects what3words...
Vulnerability Summary: CVE-2025-26765 Missing Authorization vulnerability in enituretechnology Distance Based Shipping Calculator allows Exploiting Incorrectly Configured Access Control Security Levels....
Vulnerability Summary: CVE-2025-26779 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Fahad Mahmood Keep Backup...
Vulnerability Summary: CVE-2025-21401 Microsoft Edge (Chromium-based) Security Feature Bypass Vulnerability Affected Endpoints: No affected endpoints listed. Published Date: 2/15/2025, 12:15:27...
Vulnerability Summary: CVE-2025-26819 Monero through 0.18.3.4 before ec74ff4 does not have response limits on HTTP server connections. Affected Endpoints: No...
Vulnerability Summary: CVE-2024-13513 The Oliver POS – A WooCommerce Point of Sale (POS) plugin for WordPress is vulnerable to Sensitive...
Vulnerability Summary: CVE-2024-13525 The Customer Email Verification for WooCommerce plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Vulnerability Summary: CVE-2025-1302 Versions of the package jsonpath-plus before 10.3.0 are vulnerable to Remote Code Execution (RCE) due to improper...
Vulnerability Summary: CVE-2024-13563 The Front End Users plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's forgot-password...