Vulnerabilities
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2025-02-12 | CVE-2024-13480 | SQL Injection vulnerability in Enituretechnology LTL Freight Quotes The LTL Freight Quotes – For Customers of FedEx Freight plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 3.4.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 7.5 |
2025-02-12 | CVE-2024-13532 | SQL Injection vulnerability in Enituretechnology Small Package Quotes The Small Package Quotes – Purolator Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 3.6.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 7.5 |
2025-02-12 | CVE-2025-0511 | Cross-site Scripting vulnerability in Welcart E-Commerce The Welcart e-Commerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘name’ parameter in all versions up to, and including, 2.11.9 due to insufficient input sanitization and output escaping. | 6.1 |
2025-02-12 | CVE-2025-1195 | Cross-site Scripting vulnerability in Fabian Real Estate Property Management System 1.0 A vulnerability, which was classified as problematic, has been found in code-projects Real Estate Property Management System 1.0. | 5.4 |
2025-02-12 | CVE-2025-1196 | Cross-site Scripting vulnerability in Fabian Real Estate Property Management System 1.0 A vulnerability, which was classified as problematic, was found in code-projects Real Estate Property Management System 1.0. | 5.4 |
2025-02-12 | CVE-2025-1191 | SQL Injection vulnerability in Janobe Multi Restaurant Table Reservation System 1.0 A vulnerability was found in SourceCodester Multi Restaurant Table Reservation System 1.0 and classified as critical. | 8.8 |
2025-02-12 | CVE-2025-1192 | SQL Injection vulnerability in Janobe Multi Restaurant Table Reservation System 1.0 A vulnerability was found in SourceCodester Multi Restaurant Table Reservation System 1.0. | 8.8 |
2025-02-12 | CVE-2024-12213 | Incorrect Privilege Assignment vulnerability in Apusthemes Superio The WP Job Board Pro plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 1.2.76. | 9.8 |
2025-02-12 | CVE-2024-12296 | Missing Authorization vulnerability in Apusthemes Superio The Apus Framework plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'import_page_options' function in all versions up to, and including, 2.3. | 8.8 |
2025-02-12 | CVE-2024-13437 | The Book a Room plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.9. | 4.3 |