Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-32250

Description: Cross-Site Request Forgery (CSRF) vulnerability in rollbar Rollbar allows Cross Site Request Forgery. This issue affects Rollbar: from n/a through 2.7.1.

CVSS: MEDIUM (5.4)

EPSS Score: 0.02%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32249

Description: Cross-Site Request Forgery (CSRF) vulnerability in designinvento DirectoryPress allows Cross Site Request Forgery. This issue affects DirectoryPress: from n/a through 3.6.19.

CVSS: MEDIUM (5.4)

EPSS Score: 0.02%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32248

Description: Cross-Site Request Forgery (CSRF) vulnerability in SwiftXR SwiftXR (3D/AR/VR) Viewer allows Cross Site Request Forgery. This issue affects SwiftXR (3D/AR/VR) Viewer: from n/a through 1.0.7.

CVSS: MEDIUM (5.4)

EPSS Score: 0.02%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32247

Description: Cross-Site Request Forgery (CSRF) vulnerability in ABCdatos AI Content Creator allows Cross Site Request Forgery. This issue affects AI Content Creator: from n/a through 1.2.6.

CVSS: MEDIUM (5.4)

EPSS Score: 0.02%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32246

Description: Missing Authorization vulnerability in Tim Nguyen 1-Click Backup & Restore Database allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects 1-Click Backup & Restore Database: from n/a through 1.0.3.

CVSS: MEDIUM (5.4)

EPSS Score: 0.04%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32241

Description: Cross-Site Request Forgery (CSRF) vulnerability in CleverReach® Official CleverReach Plugin for WooCommerce allows Cross Site Request Forgery. This issue affects Official CleverReach Plugin for WooCommerce: from n/a through 3.4.3.

CVSS: MEDIUM (6.5)

EPSS Score: 0.02%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32239

Description: Missing Authorization vulnerability in Joao Romao Social Share Buttons & Analytics Plugin – GetSocial.io allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Social Share Buttons & Analytics Plugin – GetSocial.io: from n/a through 4.5.

CVSS: MEDIUM (4.3)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32238

Description: Generation of Error Message Containing Sensitive Information vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita allows Retrieve Embedded Sensitive Data. This issue affects Online Booking & Scheduling Calendar for WordPress by vcita: from n/a through 4.5.2.

CVSS: MEDIUM (4.3)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32237

Description: Missing Authorization vulnerability in Stylemix MasterStudy LMS allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects MasterStudy LMS: from n/a through 3.5.23.

CVSS: MEDIUM (4.3)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32235

Description: Missing Authorization vulnerability in sonaar MP3 Audio Player for Music, Radio & Podcast by Sonaar allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects MP3 Audio Player for Music, Radio & Podcast by Sonaar: from n/a through 5.9.4.

CVSS: MEDIUM (4.3)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)