CVE-2025-32301 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup CountDown Pro WP Plugin allows SQL Injection. This issue affects CountDown Pro WP Plugin: from n/a through 2.7.
CVSS: HIGH (8.5) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-32299 |
Description: Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Themovation QuickCal allows Retrieve Embedded Sensitive Data. This issue affects QuickCal: from n/a through 1.0.15.
CVSS: MEDIUM (4.3) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-32296 |
Description: Missing Authorization vulnerability in quantumcloud Simple Link Directory Pro allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Simple Link Directory Pro: from n/a through 14.7.3.
CVSS: MEDIUM (5.3) EPSS Score: 0.04%
May 16th, 2025 (28 days ago)
|
CVE-2025-32295 |
Description: Missing Authorization vulnerability in wordpresschef Salon Booking Pro allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Salon Booking Pro: from n/a through 10.10.2.
CVSS: MEDIUM (4.3) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-32290 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup Sticky HTML5 Music Player allows SQL Injection. This issue affects Sticky HTML5 Music Player: from n/a through 3.1.6.
CVSS: HIGH (8.5) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-32287 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup Responsive HTML5 Audio Player PRO With Playlist allows SQL Injection. This issue affects Responsive HTML5 Audio Player PRO With Playlist: from n/a through 3.5.7.
CVSS: HIGH (8.5) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-32245 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup Apollo allows SQL Injection. This issue affects Apollo: from n/a through 3.6.3.
CVSS: HIGH (8.5) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-32180 |
Description: Missing Authorization vulnerability in QuanticaLabs CSS3 Tooltips for WordPress allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects CSS3 Tooltips for WordPress: from n/a through 1.8.
CVSS: MEDIUM (4.3) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-31928 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup Multimedia Responsive Carousel with Image Video Audio Support allows SQL Injection. This issue affects Multimedia Responsive Carousel with Image Video Audio Support: from n/a through 2.6.0.
CVSS: HIGH (8.5) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|
CVE-2025-31926 |
Description: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LambertGroup Sticky Radio Player allows SQL Injection. This issue affects Sticky Radio Player: from n/a through 3.4.
CVSS: HIGH (8.5) EPSS Score: 0.03%
May 16th, 2025 (28 days ago)
|