CVE Alert: CVE-2025-7690
Vulnerability Summary: CVE-2025-7690 The Affiliate Plus plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to,...
Vulnerability Summary: CVE-2025-7690 The Affiliate Plus plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to,...
Vulnerability Summary: CVE-2025-7640 The hiWeb Export Posts plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up...
Vulnerability Summary: CVE-2025-7822 The WP Wallcreeper plugin for WordPress is vulnerable to unauthorized modification of data due to a missing...
Vulnerability Summary: CVE-2025-4822 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bayraktar Solar Energies...
Vulnerability Summary: CVE-2025-5243 Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an OS Command...
Vulnerability Summary: CVE-2025-7966 The Get Youtube Subs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘channel', 'layout',...
Vulnerability Summary: CVE-2025-8071 Mine CloudVod plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘audio’ parameter in all...
Vulnerability Summary: CVE-2025-7959 The Station Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘width' and 'height’...
Vulnerability Summary: CVE-2025-33013 IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0,...
Vulnerability Summary: CVE-2025-4784 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Moderec Tourtella allows...
Vulnerability Summary: CVE-2025-45731 A group deletion race condition in 2FAuth v5.5.0 causes data inconsistencies and orphaned accounts when a group...
Vulnerability Summary: CVE-2025-33109 IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 is vulnerable to a privilege escalation caused by an...
Vulnerability Summary: CVE-2025-51089 Tenda AC8V4 V16.03.34.06` was discovered to contain heap overflow at /goform/GetParentControlInfo.The manipulation of the argument `mac` leads...
Vulnerability Summary: CVE-2025-51087 Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/saveParentControlInfo. The manipulation of the argument time...
Vulnerability Summary: CVE-2025-51085 Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/SetSysTimeCfg. The manipulation of the argument `timeZone`...
Vulnerability Summary: CVE-2025-36005 IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0,...
Vulnerability Summary: CVE-2025-51088 Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/WifiGuestSet. The manipulation of the argument `shareSpeed`...
Vulnerability Summary: CVE-2025-51082 Tenda AC8V4 V16.03.34.06` was discovered to contain stack overflow at /goform/fast_setting_wifi_set. The manipulation of the argument `timeZone`...
Vulnerability Summary: CVE-2025-25214 A race condition vulnerability exists in the aVideoEncoder.json.php unzip functionality of WWBN AVideo 14.4 and dev master...
Vulnerability Summary: CVE-2025-47061 Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that...
Vulnerability Summary: CVE-2025-8114 A flaw was found in libssh, a library that implements the SSH protocol. When calculating the session...
Vulnerability Summary: CVE-2025-46996 Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that...
Vulnerability Summary: CVE-2025-46993 Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that...
Vulnerability Summary: CVE-2025-41420 A cross-site scripting (xss) vulnerability exists in the userLogin cancelUri parameter functionality of WWBN AVideo 14.4 and...