CVE-2025-26982 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eric-Oliver Mächler DSGVO Youtube allows DOM-Based XSS. This issue affects DSGVO Youtube: from n/a through 1.5.1.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
April 15th, 2025 (5 days ago)
|
CVE-2025-26959 |
Description: Missing Authorization vulnerability in Quý Lê 91 Administrator Z allows Privilege Escalation. This issue affects Administrator Z: from n/a through 2025.03.24.
CVSS: HIGH (8.8) EPSS Score: 0.04%
April 15th, 2025 (5 days ago)
|
CVE-2025-26958 |
Description: Missing Authorization vulnerability in NotFound JetBlog allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects JetBlog: from n/a through 2.4.3.
CVSS: HIGH (7.5) EPSS Score: 0.03%
April 15th, 2025 (5 days ago)
|
CVE-2025-26955 |
Description: Missing Authorization vulnerability in VW Themes Industrial Lite allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Industrial Lite: from n/a through 1.0.8.
CVSS: MEDIUM (4.3) EPSS Score: 0.04%
April 15th, 2025 (5 days ago)
|
CVE-2025-26954 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in 1pluginjquery ZooEffect allows Reflected XSS. This issue affects ZooEffect: from n/a through 1.11.
CVSS: HIGH (7.1) EPSS Score: 0.03%
April 15th, 2025 (5 days ago)
|
CVE-2025-26944 |
Description: Missing Authorization vulnerability in NotFound JetPopup allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects JetPopup: from n/a through 2.0.11.
CVSS: HIGH (7.5) EPSS Score: 0.03%
April 15th, 2025 (5 days ago)
|
CVE-2025-26942 |
Description: Missing Authorization vulnerability in NotFound JetTricks allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects JetTricks: from n/a through 1.5.1.
CVSS: HIGH (7.5) EPSS Score: 0.03%
April 15th, 2025 (5 days ago)
|
CVE-2025-26894 |
Description: Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in NotFound Coming Soon, Maintenance Mode allows PHP Local File Inclusion. This issue affects Coming Soon, Maintenance Mode: from n/a through 1.1.1.
CVSS: HIGH (7.5) EPSS Score: 0.11%
April 15th, 2025 (5 days ago)
|
CVE-2025-26889 |
Description: Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in NotFound hockeydata LOS allows PHP Local File Inclusion. This issue affects hockeydata LOS: from n/a through 1.2.4.
CVSS: HIGH (7.5) EPSS Score: 0.11%
April 15th, 2025 (5 days ago)
|
CVE-2025-26745 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in RSTheme RS Elements Elementor Addon allows Stored XSS. This issue affects RS Elements Elementor Addon: from n/a through 1.1.5.
CVSS: MEDIUM (6.5) EPSS Score: 0.03%
April 15th, 2025 (5 days ago)
|