Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-32182

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Spider Themes Spider Elements – Addons for Elementor allows Stored XSS. This issue affects Spider Elements – Addons for Elementor: from n/a through 1.6.2.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32181

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Fast Simon Search, Filters & Merchandising for WooCommerce allows Stored XSS. This issue affects Search, Filters & Merchandising for WooCommerce: from n/a through 3.0.57.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32179

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in icopydoc Maps for WP allows Stored XSS. This issue affects Maps for WP: from n/a through 1.2.4.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32178

Description: Missing Authorization vulnerability in 6Storage 6Storage Rentals allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects 6Storage Rentals: from n/a through 2.18.0.

CVSS: MEDIUM (5.4)

EPSS Score: 0.04%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32177

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in pgn4web Embed Chessboard allows Stored XSS. This issue affects Embed Chessboard: from n/a through 3.07.00.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32176

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GalleryCreator Gallery Blocks with Lightbox allows Stored XSS. This issue affects Gallery Blocks with Lightbox: from n/a through 3.2.5.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32175

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vektor,Inc. VK Filter Search allows Stored XSS. This issue affects VK Filter Search: from n/a through 2.14.1.0.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32174

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tockify Tockify Events Calendar allows DOM-Based XSS. This issue affects Tockify Events Calendar: from n/a through 2.2.13.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32173

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in bPlugins B Blocks - The ultimate block collection allows Stored XSS. This issue affects B Blocks - The ultimate block collection: from n/a through 2.0.0.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32172

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Yuri Baranov YaMaps for WordPress allows Stored XSS. This issue affects YaMaps for WordPress: from n/a through 0.6.31.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)