CVE-2025-28902 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Benjamin Pick Contact Form 7 Select Box Editor Button allows Cross Site Request Forgery. This issue affects Contact Form 7 Select Box Editor Button: from n/a through 0.6.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
March 11th, 2025 (3 months ago)
|
CVE-2025-28896 |
Description: URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Akshar Soft Solutions AS English Admin allows Phishing. This issue affects AS English Admin: from n/a through 1.0.0.
CVSS: MEDIUM (4.7) EPSS Score: 0.03%
March 11th, 2025 (3 months ago)
|
CVE-2025-28887 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Fastmover Plugins Last Updated Column allows Cross Site Request Forgery. This issue affects Plugins Last Updated Column: from n/a through 0.1.3.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
March 11th, 2025 (3 months ago)
|
CVE-2025-28886 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in xjb REST API TO MiniProgram allows Cross Site Request Forgery. This issue affects REST API TO MiniProgram: from n/a through 4.7.1.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
March 11th, 2025 (3 months ago)
|
CVE-2025-28884 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Rajesh Kumar WP Bulk Post Duplicator allows Cross Site Request Forgery. This issue affects WP Bulk Post Duplicator: from n/a through 1.2.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
March 11th, 2025 (3 months ago)
|
CVE-2025-28881 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in mg12 Mobile Themes allows Cross Site Request Forgery. This issue affects Mobile Themes: from n/a through 1.1.1.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
March 11th, 2025 (3 months ago)
|
CVE-2025-28879 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in aumsrini Bee Layer Slider allows Stored XSS. This issue affects Bee Layer Slider: from n/a through 1.1.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
March 11th, 2025 (3 months ago)
|
CVE-2025-28878 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Will Brubaker Awesome Surveys allows Stored XSS. This issue affects Awesome Surveys: from n/a through 2.0.10.
CVSS: MEDIUM (5.9) EPSS Score: 0.04%
March 11th, 2025 (3 months ago)
|
CVE-2025-28876 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Skrill_Team Skrill Official allows Cross Site Request Forgery. This issue affects Skrill Official: from n/a through 1.0.65.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
March 11th, 2025 (3 months ago)
|
CVE-2025-28875 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in shanebp BP Email Assign Templates allows Stored XSS. This issue affects BP Email Assign Templates: from n/a through 1.6.
CVSS: MEDIUM (5.9) EPSS Score: 0.03%
March 11th, 2025 (3 months ago)
|