Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-32138

Description: Improper Restriction of XML External Entity Reference vulnerability in supsystic Easy Google Maps allows XML Injection. This issue affects Easy Google Maps: from n/a through 1.11.17.

CVSS: MEDIUM (6.6)

EPSS Score: 0.06%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32137

Description: Relative Path Traversal vulnerability in Cristián Lávaque s2Member allows Path Traversal. This issue affects s2Member: from n/a through 250214.

CVSS: MEDIUM (4.9)

EPSS Score: 0.05%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32136

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in activecampaign ActiveCampaign allows Stored XSS. This issue affects ActiveCampaign: from n/a through 8.1.16.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32135

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in rocketelements Split Test For Elementor allows Stored XSS. This issue affects Split Test For Elementor: from n/a through 1.8.3.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32134

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in KaizenCoders URL Shortify allows Stored XSS. This issue affects URL Shortify: from n/a through 1.10.4.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32133

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ays Pro Secure Copy Content Protection and Content Locking allows Stored XSS. This issue affects Secure Copy Content Protection and Content Locking: from n/a through 4.5.1.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32132

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FunnelCockpit FunnelCockpit allows Stored XSS. This issue affects FunnelCockpit: from n/a through 1.4.2.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32131

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in socialintents Social Intents allows Stored XSS. This issue affects Social Intents: from n/a through 1.6.14.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32130

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Data443 Risk Migitation, Inc. Posts Footer Manager allows Stored XSS. This issue affects Posts Footer Manager: from n/a through 2.2.0.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)

CVE-2025-32129

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Data443 Risk Migitation, Inc. Welcome Bar allows Stored XSS. This issue affects Welcome Bar: from n/a through 2.0.4.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (16 days ago)