CVE-2025-32550 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in ClickandPledge Click & Pledge Connect Plugin allows SQL Injection. This issue affects Click & Pledge Connect Plugin: from 2.24080000 through WP6.6.1.
CVSS: HIGH (7.2) EPSS Score: 0.04%
April 9th, 2025 (12 days ago)
|
CVE-2025-32547 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in gtlwpdev All push notification for WP allows Blind SQL Injection. This issue affects All push notification for WP: from n/a through 1.5.3.
CVSS: HIGH (8.2) EPSS Score: 0.02%
April 9th, 2025 (12 days ago)
|
CVE-2025-32543 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in hivedigital Canonical Attachments allows Reflected XSS. This issue affects Canonical Attachments: from n/a through 1.7.
CVSS: HIGH (7.1) EPSS Score: 0.04%
April 9th, 2025 (12 days ago)
|
CVE-2025-32518 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in hossainawlad ALD Login Page allows Stored XSS. This issue affects ALD Login Page: from n/a through 1.1.
CVSS: HIGH (7.1) EPSS Score: 0.02%
April 9th, 2025 (12 days ago)
|
CVE-2025-32505 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in SCAND MultiMailer allows Stored XSS. This issue affects MultiMailer: from n/a through 1.0.3.
CVSS: HIGH (7.1) EPSS Score: 0.02%
April 9th, 2025 (12 days ago)
|
CVE-2025-32503 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Jose Conti Link Shield allows Stored XSS. This issue affects Link Shield: from n/a through 0.5.4.
CVSS: HIGH (7.1) EPSS Score: 0.04%
April 9th, 2025 (12 days ago)
|
CVE-2025-32502 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in lemmentwickler ePaper Lister for Yumpu allows Stored XSS. This issue affects ePaper Lister for Yumpu: from n/a through 1.4.0.
CVSS: HIGH (7.1) EPSS Score: 0.02%
April 9th, 2025 (12 days ago)
|
CVE-2025-32501 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in dimafreund RentSyst allows Stored XSS. This issue affects RentSyst: from n/a through 2.0.72.
CVSS: HIGH (7.1) EPSS Score: 0.02%
April 9th, 2025 (12 days ago)
|
CVE-2025-32500 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Sudavar Codescar Radio Widget allows Stored XSS. This issue affects Codescar Radio Widget: from n/a through 0.4.2.
CVSS: HIGH (7.1) EPSS Score: 0.02%
April 9th, 2025 (12 days ago)
|
CVE-2025-32498 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in oleglark VKontakte Cross-Post allows Stored XSS. This issue affects VKontakte Cross-Post: from n/a through 0.3.2.
CVSS: HIGH (7.1) EPSS Score: 0.02%
April 9th, 2025 (12 days ago)
|