Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2025-04-05 CVE-2025-2889 The Link Library plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Link Additional Parameters in all versions up to, and including, 7.7.3 due to insufficient input sanitization and output escaping.
network
low complexity
CWE-79
6.4
2025-04-04 CVE-2025-3268 A vulnerability has been found in qinguoyi TinyWebServer up to 1.0 and classified as critical.
network
low complexity
CWE-287
5.3
2025-04-04 CVE-2025-3256 A vulnerability was found in xujiangfei admintwo 1.0.
network
low complexity
CWE-266
6.3
2025-04-04 CVE-2025-3257 A vulnerability classified as problematic has been found in xujiangfei admintwo 1.0.
network
low complexity
CWE-862
4.3
2025-04-04 CVE-2025-3254 A vulnerability was found in xujiangfei admintwo 1.0.
network
low complexity
CWE-918
6.3
2025-04-04 CVE-2025-3255 A vulnerability was found in xujiangfei admintwo 1.0.
network
low complexity
CWE-266
4.3
2025-04-04 CVE-2025-3250 A vulnerability, which was classified as problematic, has been found in elunez eladmin 2.7.
network
low complexity
CWE-502
4.3
2025-04-04 CVE-2025-3249 A vulnerability classified as critical was found in TOTOLINK A6000R 1.0.1-B20201211.2000.
network
low complexity
CWE-74
6.3
2025-04-04 CVE-2025-3243 A vulnerability was found in code-projects Patient Record Management System 1.0 and classified as critical.
network
low complexity
CWE-74
6.3
2025-04-04 CVE-2025-3244 A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0.
network
low complexity
CWE-434
6.3