CVE Alert: CVE-2025-10897 – JMA Plugins – WooCommerce Designer Pro
CVE-2025-10897 HIGHNo exploitation known The WooCommerce Designer Pro theme for WordPress is vulnerable to arbitrary file read in all versions...
CVE-2025-10897 HIGHNo exploitation known The WooCommerce Designer Pro theme for WordPress is vulnerable to arbitrary file read in all versions...
CVE-2025-3355 HIGHNo exploitation known IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 21 could allow a remote attacker to traverse...
CVE-2025-3356 HIGHNo exploitation known IBM Tivoli Monitoring 6.3.0.7 through 6.3.0.7 Service Pack 21 could allow a remote attacker to traverse...
CVE-2025-36137 HIGHNo exploitation known IBM Sterling Connect Direct for Unix 6.2.0.7 through 6.2.0.9 iFix004, 6.4.0.0 through 6.4.0.2 iFix001, and 6.3.0.2...
CVE-2025-24893 CRITICALExploitation active XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it....
CVE-2025-41244 HIGHExploitation active VMware Aria Operations and VMware Tools contain a local privilege escalation vulnerability. A malicious local actor with non-administrative...
CVE-2025-62230 HIGHNo exploitation known A flaw was discovered in the X.Org X server’s X Keyboard (Xkb) extension when handling client...
CVE-2025-62229 HIGHNo exploitation known A flaw was found in the X.Org X server and Xwayland when processing X11 Present extension...
CVE-2025-62231 HIGHNo exploitation known A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds...
CVE-2025-11232 HIGHNo exploitation known To trigger the issue, three configuration parameters must have specific settings: "hostname-char-set" must be left at...
CVE-2025-53814 HIGHNo exploitation known A use-after-free vulnerability exists in the XML parser functionality of GCC Productions Inc. Fade In 4.2.0....
CVE-2025-12378 HIGHNo exploitation knownPoC observed A security flaw has been discovered in code-projects Simple Food Ordering System 1.0. This issue...
CVE-2025-53855 HIGHNo exploitation known An out-of-bounds write vulnerability exists in the XML parser functionality of GCC Productions Inc. Fade In...
CVE-2025-6205 CRITICALExploitation active A missing authorization vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could allow an attacker...
CVE-2025-6204 HIGHExploitation active An Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through...
CVE-2025-12341 HIGHNo exploitation knownPoC observed A vulnerability was detected in ermig1979 AntiDupl up to 2.3.12. Impacted is an unknown function...
CVE-2025-11735 HIGHNo exploitation known The HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to blind SQL...
CVE-2025-10145 HIGHNo exploitation known The Auto Featured Image (Auto Post Thumbnail) plugin for WordPress is vulnerable to Server-Side Request Forgery...
CVE-2025-12339 HIGHNo exploitation knownPoC observed A security vulnerability has been detected in Campcodes Retro Basketball Shoes Online Store 1.0. This...
CVE-2025-12342 HIGHNo exploitation knownPoC observed A flaw has been found in Serdar Bayram Ghost Hot Spot up to 20251014. The...
CVE-2025-12336 HIGHNo exploitation knownPoC observed A vulnerability was identified in Campcodes Retro Basketball Shoes Online Store 1.0. Affected by this...
CVE-2025-12325 HIGHNo exploitation known A vulnerability has been found in SourceCodester Best Salon Management System 1.0. This affects an unknown...
CVE-2025-12337 HIGHNo exploitation knownPoC observed A security flaw has been discovered in Campcodes Retro Basketball Shoes Online Store 1.0. This...
CVE-2025-12338 HIGHNo exploitation knownPoC observed A weakness has been identified in Campcodes Retro Basketball Shoes Online Store 1.0. This vulnerability...