Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-31453

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Stian Andreassen YouTube SimpleGallery allows Stored XSS. This issue affects YouTube SimpleGallery: from n/a through 2.0.6.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31452

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Mindshare Labs, Inc. WP Ultimate Search allows Stored XSS. This issue affects WP Ultimate Search: from n/a through 2.0.3.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31451

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in kevinweber wBounce allows Stored XSS. This issue affects wBounce: from n/a through 1.8.1.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31450

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in phantom.omaga Toggle Box allows Stored XSS. This issue affects Toggle Box: from n/a through 1.6.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31448

Description: Cross-Site Request Forgery (CSRF) vulnerability in misteraon Simple Trackback Disabler allows Cross Site Request Forgery. This issue affects Simple Trackback Disabler: from n/a through 1.4.

CVSS: MEDIUM (5.4)

EPSS Score: 0.02%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31447

Description: Cross-Site Request Forgery (CSRF) vulnerability in nertworks NertWorks All in One Social Share Tools allows Cross Site Request Forgery. This issue affects NertWorks All in One Social Share Tools: from n/a through 1.26.

CVSS: MEDIUM (5.4)

EPSS Score: 0.02%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31439

Description: Cross-Site Request Forgery (CSRF) vulnerability in tobias_.MerZ Browser Caching with .htaccess allows Cross Site Request Forgery. This issue affects Browser Caching with .htaccess: from 1.2.1 through n/a.

CVSS: MEDIUM (5.4)

EPSS Score: 0.02%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31438

Description: Cross-Site Request Forgery (CSRF) vulnerability in Benoit De Boeck WP Supersized allows Cross Site Request Forgery. This issue affects WP Supersized: from n/a through 3.1.6.

CVSS: MEDIUM (4.3)

EPSS Score: 0.02%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31437

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in David Miller WP-OGP allows Stored XSS. This issue affects WP-OGP: from n/a through 1.0.5.

CVSS: MEDIUM (5.9)

EPSS Score: 0.03%

Source: CVE
March 28th, 2025 (25 days ago)

CVE-2025-31434

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Adrian Tobey FormLift for Infusionsoft Web Forms allows Stored XSS. This issue affects FormLift for Infusionsoft Web Forms: from n/a through 7.5.19.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
March 28th, 2025 (25 days ago)