Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2025-04-06 CVE-2025-3312 A vulnerability, which was classified as critical, has been found in PHPGurukul Men Salon Management System 1.0.
network
low complexity
CWE-74
7.3
2025-04-06 CVE-2025-3309 A vulnerability was found in code-projects Blood Bank Management System 1.0.
network
low complexity
CWE-74
7.3
2025-04-06 CVE-2025-3310 A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0.
network
low complexity
CWE-74
7.3
2025-04-05 CVE-2025-3303 SQL Injection vulnerability in Code-Projects Patient Record Management System 1.0
A vulnerability, which was classified as critical, has been found in code-projects Patient Record Management System 1.0.
network
low complexity
code-projects CWE-89
7.5
2025-04-05 CVE-2024-13776 The ZoomSounds - WordPress Wave Audio Player with Playlist plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to a missing capability check on the 'dzsap_delete_notice' AJAX action in all versions up to, and including, 6.91.
network
low complexity
CWE-862
8.1
2025-04-05 CVE-2024-13604 The KB Support – Customer Support Ticket & Helpdesk Plugin, Knowledge Base Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.7.4 via the 'kbs' directory.
network
low complexity
CWE-200
7.5
2025-04-05 CVE-2025-0810 The Read More & Accordion plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.4.5.
network
high complexity
CWE-352
7.5
2025-04-05 CVE-2025-2933 The Email Notifications for Updates plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the awun_import_settings() function in all versions up to, and including, 1.1.6.
network
low complexity
CWE-862
8.8
2025-04-04 CVE-2025-3267 SQL Injection vulnerability in Qinguoyi Tinywebserver 1.0
A vulnerability, which was classified as critical, was found in qinguoyi TinyWebServer up to 1.0.
network
low complexity
qinguoyi CWE-89
8.8
2025-04-04 CVE-2025-3259 Out-of-bounds Write vulnerability in Tenda RX3 Firmware 16.03.13.11Multi
A vulnerability, which was classified as critical, has been found in Tenda RX3 16.03.13.11.
network
low complexity
tenda CWE-787
8.8