Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2025-04-22 CVE-2025-46249 Cross-Site Request Forgery (CSRF) vulnerability in Migaweb Simple Calendar for Elementor
Cross-Site Request Forgery (CSRF) vulnerability in Michael Simple calendar for Elementor allows Cross Site Request Forgery.
network
low complexity
migaweb CWE-352
8.8
2025-04-22 CVE-2025-46251 Cross-Site Request Forgery (CSRF) vulnerability in E4Jconnect Vikrestaurants Table Reservations and Take-Away
Cross-Site Request Forgery (CSRF) vulnerability in e4jvikwp VikRestaurants Table Reservations and Take-Away allows Cross Site Request Forgery.
network
low complexity
e4jconnect CWE-352
8.8
2025-04-22 CVE-2025-46252 SQL Injection vulnerability in Kofimokome Message Filter for Contact Form 7
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in kofimokome Message Filter for Contact Form 7 allows SQL Injection.
network
low complexity
kofimokome CWE-89
7.2
2025-04-22 CVE-2025-3616 Unrestricted Upload of File with Dangerous Type vulnerability in Greenshiftwp Greenshift - Animation and Page Builder Blocks
The Greenshift – animation and page builder blocks plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the gspb_make_proxy_api_request() function in versions 11.4 to 11.4.5.
network
low complexity
greenshiftwp CWE-434
8.8
2025-04-22 CVE-2025-3854 A vulnerability, which was classified as critical, was found in H3C GR-3000AX up to V100R006.
low complexity
CWE-120
8.0
2025-04-21 CVE-2025-3846 A vulnerability was found in markparticle WebServer up to 1.0.
network
low complexity
CWE-74
7.3
2025-04-21 CVE-2025-3847 A vulnerability classified as critical has been found in markparticle WebServer up to 1.0.
network
low complexity
CWE-74
7.3
2025-04-21 CVE-2025-3845 A vulnerability was found in markparticle WebServer up to 1.0.
network
low complexity
CWE-120
7.3
2025-04-21 CVE-2025-43971 Off-by-one Error vulnerability in Osrg Gobgp
An issue was discovered in GoBGP before 3.35.0.
network
low complexity
osrg CWE-193
7.5
2025-04-21 CVE-2025-43972 Improper Validation of Specified Quantity in Input vulnerability in Osrg Gobgp
An issue was discovered in GoBGP before 3.35.0.
network
low complexity
osrg CWE-1284
7.5