CVE-2025-23998 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rara Theme UltraLight allows Reflected XSS. This issue affects UltraLight: from n/a through 1.2.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23997 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in [email protected] Tamara Checkout allows Stored XSS. This issue affects Tamara Checkout: from n/a through 1.9.8.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23996 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in anyroad.com AnyRoad allows Cross Site Request Forgery. This issue affects AnyRoad: from n/a through 1.3.2.
CVSS: MEDIUM (4.3) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23994 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Estatebud Estatebud – Properties & Listings allows Stored XSS. This issue affects Estatebud – Properties & Listings: from n/a through 5.5.0.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23580 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Matthew Garvin BizLibrary allows Reflected XSS. This issue affects BizLibrary: from n/a through 1.1.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23551 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in P. Razvan SexBundle allows Reflected XSS. This issue affects SexBundle: from n/a through 1.4.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23489 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brian Messenlehner of WebDevStudios WP-Announcements allows Reflected XSS. This issue affects WP-Announcements: from n/a through 1.8.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23477 |
Description: Missing Authorization vulnerability in Realty Workstation Realty Workstation allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Realty Workstation: from n/a through 1.0.45.
CVSS: HIGH (8.2) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23461 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Andrea Dotta, Jacopo Campani, di xkoll.com Social2Blog allows Reflected XSS. This issue affects Social2Blog: from n/a through 0.2.990.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|
CVE-2025-23454 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in flashmaniac Nature FlipBook allows Reflected XSS. This issue affects Nature FlipBook: from n/a through 1.7.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 22nd, 2025 (6 months ago)
|