CVE-2025-32144 |
Description: Deserialization of Untrusted Data vulnerability in PickPlugins Job Board Manager allows Object Injection. This issue affects Job Board Manager: from n/a through 2.1.60.
CVSS: HIGH (8.8) EPSS Score: 0.05%
April 11th, 2025 (3 months ago)
|
CVE-2025-32143 |
Description: Deserialization of Untrusted Data vulnerability in PickPlugins Accordion allows Object Injection. This issue affects Accordion: from n/a through 2.3.10.
CVSS: HIGH (8.8) EPSS Score: 0.05%
April 11th, 2025 (3 months ago)
|
CVE-2025-32107 |
Description: OS command injection vulnerability exists in Deco BE65 Pro firmware versions prior to "Deco BE65 Pro(JP)_V1_1.1.2 Build 20250123". If this vulnerability is exploited, an arbitrary OS command may be executed by the user who can log in to the device.
CVSS: HIGH (8.0) EPSS Score: 0.77%
April 11th, 2025 (3 months ago)
|
CVE-2025-31379 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in programphases Insert HTML Here allows Reflected XSS. This issue affects Insert HTML Here: from n/a through 1.0.
CVSS: HIGH (7.1) EPSS Score: 0.04%
April 11th, 2025 (3 months ago)
|
CVE-2025-31378 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in danbwb Oppso Unit Converter allows Reflected XSS. This issue affects Oppso Unit Converter: from n/a through 1.1.1.
CVSS: HIGH (7.1) EPSS Score: 0.04%
April 11th, 2025 (3 months ago)
|
CVE-2025-31041 |
Description: Missing Authorization vulnerability in NotFound AnyTrack Affiliate Link Manager allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects AnyTrack Affiliate Link Manager: from n/a through 1.0.4.
CVSS: HIGH (7.5) EPSS Score: 0.04%
April 11th, 2025 (3 months ago)
|
CVE-2025-31040 |
Description: Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in NotFound WP Food ordering and Restaurant Menu allows PHP Local File Inclusion. This issue affects WP Food ordering and Restaurant Menu: from n/a through 1.1.
CVSS: HIGH (8.1) EPSS Score: 0.15%
April 11th, 2025 (3 months ago)
|
CVE-2025-31028 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound WP Hide Categories allows Reflected XSS. This issue affects WP Hide Categories: from n/a through 1.0.
CVSS: HIGH (7.1) EPSS Score: 0.04%
April 11th, 2025 (3 months ago)
|
CVE-2025-31021 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in dolby_uk Mobile Smart allows Reflected XSS. This issue affects Mobile Smart: from n/a through v1.3.16.
CVSS: HIGH (7.1) EPSS Score: 0.04%
April 11th, 2025 (3 months ago)
|
CVE-2025-31015 |
Description: Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Adrian Tobey WordPress SMTP Service, Email Delivery Solved! — MailHawk allows PHP Local File Inclusion. This issue affects WordPress SMTP Service, Email Delivery Solved! — MailHawk: from n/a through 1.3.1.
CVSS: HIGH (7.5) EPSS Score: 0.11%
April 11th, 2025 (3 months ago)
|