Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-06-04 CVE-2025-5531 The Employee Directory – Staff Listing & Team Directory Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'emd_mb_meta' shortcode in all versions up to, and including, 4.5.0 due to insufficient input sanitization and output escaping on user supplied attributes.
network
low complexity
CWE-79
6.4
2025-06-04 CVE-2025-5532 The Campus Directory – Faculty, Staff & Student Directory Plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'emd_mb_meta' shortcode in all versions up to, and including, 1.9.0 due to insufficient input sanitization and output escaping on user supplied attributes.
network
low complexity
CWE-79
6.4
2025-06-04 CVE-2025-5556 A vulnerability, which was classified as critical, was found in PHPGurukul Teacher Subject Allocation Management System 1.0.
network
low complexity
CWE-74
6.3
2025-06-04 CVE-2025-5552 A vulnerability was found in ChestnutCMS up to 15.1.
network
low complexity
CWE-502
6.3
2025-06-04 CVE-2025-5553 A vulnerability classified as critical was found in PHPGurukul Rail Pass Management System 1.0.
network
low complexity
CWE-74
7.3
2025-06-04 CVE-2025-5554 A vulnerability, which was classified as critical, has been found in PHPGurukul Rail Pass Management System 1.0.
network
low complexity
CWE-74
6.3
2025-06-04 CVE-2025-5551 A vulnerability was found in FreeFloat FTP Server 1.0.
network
low complexity
CWE-120
7.3
2025-06-04 CVE-2025-5548 A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0.
network
low complexity
CWE-120
7.3
2025-06-04 CVE-2025-5549 A vulnerability has been found in FreeFloat FTP Server 1.0 and classified as critical.
network
low complexity
CWE-120
7.3
2025-06-04 CVE-2025-5550 A vulnerability was found in FreeFloat FTP Server 1.0 and classified as critical.
network
low complexity
CWE-120
7.3