Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

CVE-2025-32196

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in blazethemes News Kit Elementor Addons allows Stored XSS. This issue affects News Kit Elementor Addons: from n/a through 1.3.1.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32195

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ecwid by Lightspeed Ecommerce Shopping Cart Ecwid Shopping Cart allows Stored XSS. This issue affects Ecwid Shopping Cart: from n/a through 7.0.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32194

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in LA-Studio LA-Studio Element Kit for Elementor allows Stored XSS. This issue affects LA-Studio Element Kit for Elementor: from n/a through 1.4.9.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32193

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPMinds Simple WP Events allows Stored XSS. This issue affects Simple WP Events: from n/a through 1.8.17.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32192

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in UltraPress Ultra Addons Lite for Elementor allows Stored XSS. This issue affects Ultra Addons Lite for Elementor: from n/a through 1.1.8.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32191

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in webangon News Element Elementor Blog Magazine allows DOM-Based XSS. This issue affects News Element Elementor Blog Magazine: from n/a through 1.0.7.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32190

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in smartwpress Musician's Pack for Elementor allows DOM-Based XSS. This issue affects Musician's Pack for Elementor: from n/a through 1.8.4.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32189

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Best WP Developer BWD Elementor Addons allows DOM-Based XSS. This issue affects BWD Elementor Addons: from n/a through 4.3.20.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32188

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ILLID Advanced Woo Labels allows Stored XSS. This issue affects Advanced Woo Labels: from n/a through 2.14.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)

CVE-2025-32187

Description: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Quý Lê 91 Administrator Z allows DOM-Based XSS. This issue affects Administrator Z: from n/a through 2025.03.04.

CVSS: MEDIUM (6.5)

EPSS Score: 0.03%

Source: CVE
April 4th, 2025 (18 days ago)