CVE-2025-23864 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WP Code Snippets (Luke America) WCS QR Code Generator allows Stored XSS.This issue affects WCS QR Code Generator: from n/a through 1.0.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23863 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eiji ‘Sabaoh’ Yamada Rollover Tab allows Stored XSS.This issue affects Rollover Tab: from n/a through 1.3.2.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23862 |
Description: Missing Authorization vulnerability in SzMake Contact Form 7 Anti Spambot allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Contact Form 7 Anti Spambot: from n/a through 1.0.1.
CVSS: MEDIUM (5.3) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23861 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Katz Web Services, Inc. Debt Calculator allows Cross Site Request Forgery.This issue affects Debt Calculator: from n/a through 1.0.1.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23860 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Eyouth { rob.panes } Charity-thermometer allows Stored XSS.This issue affects Charity-thermometer: from n/a through 1.1.2.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23859 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Joshua Wieczorek Daily Proverb allows Stored XSS.This issue affects Daily Proverb: from n/a through 2.0.3.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23856 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Alessandro Staniscia Simple Vertical Timeline allows DOM-Based XSS.This issue affects Simple Vertical Timeline: from n/a through 0.1.
CVSS: MEDIUM (6.5) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23854 |
Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in YesStreaming.com Shoutcast and Icecast Internet Radio Hosting Shoutcast and Icecast HTML5 Web Radio Player by YesStreaming.com allows Stored XSS.This issue affects Shoutcast and Icecast HTML5 Web Radio Player by YesStreaming.com: from n/a through 3.3.
CVSS: MEDIUM (5.9) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23848 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in Daniel Powney Hotspots Analytics allows Stored XSS.This issue affects Hotspots Analytics: from n/a through 4.0.12.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|
CVE-2025-23844 |
Description: Cross-Site Request Forgery (CSRF) vulnerability in wellwisher Custom Widget Classes allows Cross Site Request Forgery.This issue affects Custom Widget Classes: from n/a through 1.1.
CVSS: HIGH (7.1) EPSS Score: 0.04%
January 17th, 2025 (5 months ago)
|