CVE-2025-32679 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in ZealousWeb User Registration Using Contact Form 7 allows Cross Site Request Forgery. This issue affects User Registration Using Contact Form 7: from n/a through 2.2.
CVSS: MEDIUM (5.4) EPSS Score: 0.02%
April 9th, 2025 (13 days ago)
|
CVE-2025-32678 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Ashish Ajani WP Show Stats allows Cross Site Request Forgery. This issue affects WP Show Stats: from n/a through 1.5.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
April 9th, 2025 (13 days ago)
|
CVE-2025-32675 |
Description: Server-Side Request Forgery (SSRF) vulnerability in QuantumCloud SEO Help allows Server Side Request Forgery. This issue affects SEO Help: from n/a through 6.6.0.
CVSS: MEDIUM (6.8) EPSS Score: 0.03%
April 9th, 2025 (13 days ago)
|
CVE-2025-32640 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Elementor One Click Accessibility allows Stored XSS. This issue affects One Click Accessibility: from n/a through 3.1.0.
CVSS: MEDIUM (5.9) EPSS Score: 0.03%
April 9th, 2025 (13 days ago)
|
CVE-2025-32499 |
Description: Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in wpWax Logo Showcase Ultimate allows PHP Local File Inclusion. This issue affects Logo Showcase Ultimate: from n/a through 1.4.4.
CVSS: MEDIUM (6.5) EPSS Score: 0.05%
April 9th, 2025 (13 days ago)
|
CVE-2025-32495 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Joe Waymark allows Stored XSS. This issue affects Waymark: from n/a through 1.5.2.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
April 9th, 2025 (13 days ago)
|
CVE-2025-32494 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in bozdoz reCAPTCHA Jetpack allows Cross Site Request Forgery. This issue affects reCAPTCHA Jetpack: from n/a through 0.2.2.
CVSS: MEDIUM (4.3) EPSS Score: 0.02%
April 9th, 2025 (13 days ago)
|
CVE-2025-32493 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VibeThemes BP Social Connect allows Stored XSS. This issue affects BP Social Connect: from n/a through 1.6.2.
CVSS: MEDIUM (5.9) EPSS Score: 0.03%
April 9th, 2025 (13 days ago)
|
CVE-2025-32492 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eliot Akira Admin Menu Post List allows Stored XSS. This issue affects Admin Menu Post List: from n/a through 2.0.7.
CVSS: MEDIUM (5.9) EPSS Score: 0.03%
April 9th, 2025 (13 days ago)
|
CVE-2025-32489 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Tim Wetterwarner allows Stored XSS. This issue affects Wetterwarner: from n/a through 2.7.2.
CVSS: MEDIUM (5.9) EPSS Score: 0.03%
April 9th, 2025 (13 days ago)
|