Weekly Vulnerabilities Reports > January 20 to 26, 2025

Overview

205 new vulnerabilities reported during this period, including 14 critical vulnerabilities and 45 high severity vulnerabilities. This weekly summary report vulnerabilities in 85 products from 71 vendors including Linuxfoundation, Linux, Jetbrains, Aipower, and Openimageio. Vulnerabilities are notably categorized as "Cross-site Scripting", "Missing Authorization", "NULL Pointer Dereference", "SQL Injection", and "Code Injection".

  • 178 reported vulnerabilities are remotely exploitables.
  • 84 reported vulnerabilities are related to weaknesses in OWASP Top Ten.
  • 96 reported vulnerabilities are exploitable by an anonymous user.
  • Linuxfoundation has the most reported vulnerabilities, with 15 reported vulnerabilities.
  • Openimageio has the most reported critical vulnerabilities, with 3 reported vulnerabilities.

TOTAL
VULNERABILITIES
CRITICAL RISK
VULNERABILITIES
HIGH RISK
VULNERABILITIES
MEDIUM RISK
VULNERABILITIES
LOW RISK
VULNERABILITIES
REMOTELY
EXPLOITABLE
LOCALLY
EXPLOITABLE
EXPLOIT
AVAILABLE
EXPLOITABLE
ANONYMOUSLY
AFFECTING
WEB APPLICATION

Vulnerability Details

The following table list reported vulnerabilities for the period covered by this report:

Expand/Hide

14 Critical Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2025-01-25 CVE-2025-0357 The WPBookit plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'WPB_Profile_controller::handle_image_upload' function in versions up to, and including, 1.6.9.
9.8
2025-01-24 CVE-2024-13545 G5Plus Unspecified vulnerability in G5Plus Ultimate Bootstrap Elements for Elementor

The Bootstrap Ultimate theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.4.9 via the path parameter.

9.8
2025-01-23 CVE-2023-46400 Kwhotel Improper Neutralization of Formula Elements in a CSV File vulnerability in Kwhotel 0.47

KWHotel 0.47 is vulnerable to CSV Formula Injection in the add guest function.

9.8
2025-01-23 CVE-2023-46401 Kwhotel Improper Neutralization of Formula Elements in a CSV File vulnerability in Kwhotel 0.47

KWHotel 0.47 is vulnerable to CSV Formula Injection in the invoice adding function.

9.8
2025-01-23 CVE-2024-55192 Openimageio Out-of-bounds Write vulnerability in Openimageio 3.1.0.0

OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*).

9.8
2025-01-23 CVE-2024-55193 Openimageio Unspecified vulnerability in Openimageio 3.1.0.0

OpenImageIO v3.1.0.0dev was discovered to contain a segmentation violation via the component /OpenImageIO/string_view.h.

9.8
2025-01-23 CVE-2024-55194 Openimageio Out-of-bounds Write vulnerability in Openimageio 3.1.0.0

OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h.

9.8
2025-01-23 CVE-2024-57328 Projectworlds SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0

A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0.

9.8
2025-01-23 CVE-2025-23006 Sonicwall Unspecified vulnerability in Sonicwall products

Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands.

9.8
2025-01-23 CVE-2024-13234 Woobewoo SQL Injection vulnerability in Woobewoo Product Table 1.9.5

The Product Table by WBW plugin for WordPress is vulnerable to SQL Injection via the 'additionalCondition' parameter in all versions up to, and including, 2.1.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.

9.8
2025-01-22 CVE-2024-12857 Scriptsbundle Missing Authentication for Critical Function vulnerability in Scriptsbundle Adforest

The AdForest theme for WordPress is vulnerable to authentication bypass in all versions up to, and including, 5.1.8.

9.8
2025-01-22 CVE-2024-13091 Wpbot Unrestricted Upload of File with Dangerous Type vulnerability in Wpbot Wpot

The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'qcld_wpcfb_file_upload' function in all versions up to, and including, 13.5.4.

9.8
2025-01-20 CVE-2024-45647 IBM Unspecified vulnerability in IBM products

IBM Security Verify Access 10.0.0 through 10.0.8 and IBM Security Verify Access Docker 10.0.0 through 10.0.8 could allow could an unverified user to change the password of an expired user without prior knowledge of that password.

9.8
2025-01-20 CVE-2025-0585 The a+HRD from aEnrich Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.
9.8

45 High Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2025-01-26 CVE-2024-11641 Vikwp Cross-Site Request Forgery (CSRF) vulnerability in Vikwp Vikbooking Hotel Booking Engine & PMS

The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.7.2.

8.8
2025-01-26 CVE-2024-11936 Mvpthemes Missing Authorization vulnerability in Mvpthemes ZOX News

The Zox News theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'backup_options' and 'restore_options' function in all versions up to, and including, 3.16.0.

8.8
2025-01-25 CVE-2024-39750 IBM Analytics Content Hub 2.0 is vulnerable to a buffer overflow due to improper return length checking.
8.8
2025-01-25 CVE-2025-0682 The ThemeREX Addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.33.0 via the 'trx_sc_reviews' shortcode 'type' attribute.
8.8
2025-01-24 CVE-2025-24753 Kadencewp Missing Authorization vulnerability in Kadencewp Gutenberg Blocks With AI

Missing Authorization vulnerability in Kadence WP Gutenberg Blocks by Kadence Blocks allows Exploiting Incorrectly Configured Access Control Security Levels.

8.8
2025-01-24 CVE-2024-41739 IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized actions due to dependency confusion.
8.8
2025-01-24 CVE-2024-13408 Pickplugins Unspecified vulnerability in Pickplugins Post Grid

The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.10 via the 'theme' attribute of the `pgcu` shortcode.

8.8
2025-01-24 CVE-2024-13409 Wpwax Unspecified vulnerability in Wpwax Post Grid, Slider & Carousel Ultimate

The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.10 via the 'theme' parameter of the post_type_ajax_handler() function.

8.8
2025-01-23 CVE-2024-13593 Bmltenabled Unspecified vulnerability in Bmltenabled Meeting MAP

The BMLT Meeting Map plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.6.0 via the 'bmlt_meeting_map' shortcode.

8.8
2025-01-22 CVE-2024-31903 IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 allow an attacker on the local network to execute arbitrary code on the system, caused by the deserialization of untrusted data.
8.8
2025-01-22 CVE-2024-13361 Aipower Missing Authorization vulnerability in Aipower

The AI Power: Complete AI Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the wpaicg_save_image_media function in all versions up to, and including, 1.8.96.

8.8
2025-01-21 CVE-2025-24456 Jetbrains Missing Authentication for Critical Function vulnerability in Jetbrains HUB

In JetBrains Hub before 2024.3.55417 privilege escalation was possible via LDAP authentication mapping

8.8
2025-01-21 CVE-2024-10936 Instawp Deserialization of Untrusted Data vulnerability in Instawp String Locator

The String locator plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.6.6 via deserialization of untrusted input in the 'recursive_unserialize_replace' function.

8.8
2025-01-26 CVE-2024-10705 Themeisle Server-Side Request Forgery (SSRF) vulnerability in Themeisle multiple Page Generator

The Multiple Page Generator Plugin – MPG plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.0.5 via the 'mpg_download_file_by_link' function.

8.1
2025-01-24 CVE-2024-25034 IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the type of file in the File Manager T1 process.
8.0
2025-01-24 CVE-2024-40693 IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the content of the file uploaded to the web interface.
8.0
2025-01-24 CVE-2025-0707 A vulnerability was found in Rise Group Rise Mode Temp CPU 2.1.
7.8
2025-01-21 CVE-2025-24458 Jetbrains Authentication Bypass by Spoofing vulnerability in Jetbrains Youtrack

In JetBrains YouTrack before 2024.3.55417 account takeover was possible via spoofed email and Helpdesk integration

7.8
2025-01-26 CVE-2024-11090 Stellarwp Unspecified vulnerability in Stellarwp Membership Plugin - Restrict Content

The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.2.13 via the WordPress core search feature.

7.5
2025-01-26 CVE-2024-10628 The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to SQL Injection via the ‘id’ parameter in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
7.5
2025-01-25 CVE-2024-13562 Importwp Unspecified vulnerability in Importwp Import WP

The Import WP – Export and Import CSV and XML files to WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.14.5 via the uploads directory.

7.5
2025-01-22 CVE-2025-20165 A vulnerability in the SIP processing subsystem of Cisco BroadWorks could allow an unauthenticated, remote attacker to halt the processing of incoming SIP requests, resulting in a denial of service (DoS) condition. This vulnerability is due to improper memory handling for certain SIP requests.
7.5
2025-01-22 CVE-2024-13496 Gamipress SQL Injection vulnerability in Gamipress

The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versions up to, and including, 7.2.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.

7.5
2025-01-21 CVE-2023-37029 Linuxfoundation Reachable Assertion vulnerability in Linuxfoundation Magma

Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) are susceptible to an assertion-based crash when an oversized NAS packet is received.

7.5
2025-01-21 CVE-2023-37032 Linuxfoundation Out-of-bounds Write vulnerability in Linuxfoundation Magma

A Stack-based buffer overflow in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows remote attackers to crash the MME with an unauthenticated cellphone by sending a NAS packet containing an oversized `Emergency Number List` Information Element.

7.5
2025-01-21 CVE-2024-24416 Linuxfoundation Classic Buffer Overflow vulnerability in Linuxfoundation Magma

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_access_point_name_ie function at /3gpp/3gpp_24.008_sm_ies.c.

7.5
2025-01-21 CVE-2024-24417 Linuxfoundation Out-of-bounds Read vulnerability in Linuxfoundation Magma

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_protocol_configuration_options function at /3gpp/3gpp_24.008_sm_ies.c.

7.5
2025-01-21 CVE-2024-24418 Linuxfoundation Classic Buffer Overflow vulnerability in Linuxfoundation Magma

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_pdn_address function at /nas/ies/PdnAddress.cpp.

7.5
2025-01-21 CVE-2024-24419 Linuxfoundation Classic Buffer Overflow vulnerability in Linuxfoundation Magma

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_traffic_flow_template_packet_filter function at /3gpp/3gpp_24.008_sm_ies.c.

7.5
2025-01-21 CVE-2024-24422 Linuxfoundation Out-of-bounds Write vulnerability in Linuxfoundation Magma

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a stack overflow in the decode_protocol_configuration_options function at /3gpp/3gpp_24.008_sm_ies.c.

7.5
2025-01-21 CVE-2024-24423 Linuxfoundation Out-of-bounds Write vulnerability in Linuxfoundation Magma

The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_esm_message_container function at /nas/ies/EsmMessageContainer.cpp.

7.5
2025-01-21 CVE-2024-24427 Open5Gs Reachable Assertion vulnerability in Open5Gs

A reachable assertion in the amf_ue_set_suci function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet.

7.5
2025-01-21 CVE-2024-24428 Open5Gs Reachable Assertion vulnerability in Open5Gs

A reachable assertion in the oai_nas_5gmm_decode function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NGAP packet.

7.5
2025-01-21 CVE-2024-43709 Elastic Allocation of Resources Without Limits or Throttling vulnerability in Elastic Elasticsearch

An allocation of resources without limits or throttling in Elasticsearch can lead to an OutOfMemoryError exception resulting in a crash via a specially crafted query using an SQL function.

7.5
2025-01-21 CVE-2024-12104 Atarim Missing Authorization vulnerability in Atarim Visual Website Collaboration, Feedback & Project Management

The Visual Website Collaboration, Feedback & Project Management – Atarim plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the wpf_delete_file and wpf_delete_file functions in all versions up to, and including, 4.0.9.

7.5
2025-01-26 CVE-2024-10633 The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency).
7.3
2025-01-22 CVE-2024-13495 Gamipress Code Injection vulnerability in Gamipress

The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via the gamipress_ajax_get_logs() function in all versions up to, and including, 7.2.1.

7.3
2025-01-22 CVE-2024-13499 Gamipress Code Injection vulnerability in Gamipress

The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via gamipress_do_shortcode() function in all versions up to, and including, 7.2.1.

7.3
2025-01-20 CVE-2025-0579 A vulnerability was found in Shiprocket Module 3/4 on OpenCart.
7.3
2025-01-26 CVE-2024-10574 The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ays_save_google_credentials' function in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency).
7.2
2025-01-25 CVE-2024-12600 The Custom Product Tabs Lite for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.9.0 via deserialization of untrusted input from the 'frs_woo_product_tabs' parameter.
7.2
2025-01-22 CVE-2025-0428 Aipower Deserialization of Untrusted Data vulnerability in Aipower

The "AI Power: Complete AI Pack" plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.8.96 via deserialization of untrusted input from the $form['post_content'] variable through the wpaicg_export_prompts function.

7.2
2025-01-22 CVE-2025-0429 Aipower Deserialization of Untrusted Data vulnerability in Aipower

The "AI Power: Complete AI Pack" plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.8.96 via deserialization of untrusted input from the $form['post_content'] variable through the wpaicg_export_ai_forms() function.

7.2
2025-01-20 CVE-2025-0582 Angeljudesuarez Unrestricted Upload of File with Dangerous Type vulnerability in Angeljudesuarez Tailoring Management System 1.0

A vulnerability classified as critical was found in itsourcecode Farm Management System up to 1.0.

7.2
2025-01-20 CVE-2025-0586 The a+HRD from aEnrich Technology has an Insecure Deserialization vulnerability, allowing remote attackers with database modification privileges and regular system privileges to perform arbitrary code execution.
7.2

138 Medium Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2025-01-26 CVE-2023-50946 IBM Common Licensing 9.0 could allow an authenticated user to modify a configuration file that they should not have access to due to a broken authorization mechanism.
6.5
2025-01-25 CVE-2024-13450 Bitapps Server-Side Request Forgery (SSRF) vulnerability in Bitapps Contact Form Builder

The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.17.4 via the Webhooks integration.

6.5
2025-01-25 CVE-2024-12885 The Connections Business Directory plugin for WordPress is vulnerable to arbitrary directory deletion due to insufficient file path validation when deleting a connections image directory in all versions up to, and including, 10.4.66.
6.5
2025-01-25 CVE-2024-13370 Kainelabs Missing Authorization vulnerability in Kainelabs Youzify

The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the save_addon_key_license() function in all versions up to, and including, 1.3.2.

6.5
2025-01-25 CVE-2024-13550 Paulrosen Path Traversal vulnerability in Paulrosen ABC Notation

The ABC Notation plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 6.1.3 via the 'file' attribute of the 'abcjs' shortcode.

6.5
2025-01-24 CVE-2024-13698 Astoundify Missing Authorization vulnerability in Astoundify Jobify

The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'download_image_via_ai' and 'generate_image_via_ai' functions in all versions up to, and including, 4.2.7.

6.5
2025-01-24 CVE-2024-45077 IBM Maximo Asset Management 7.6.1.3 MXAPIASSET API is vulnerable to unrestricted file upload which allows authenticated low privileged user to upload restricted file types with a simple method of adding a dot to the end of the file name if Maximo is installed on Windows operating system.
6.5
2025-01-24 CVE-2024-13594 Neofix SQL Injection vulnerability in Neofix Simple Downloads List

The Simple Downloads List plugin for WordPress is vulnerable to SQL Injection via the 'category' attribute of the 'neofix_sdl' shortcode in all versions up to, and including, 1.4.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.

6.5
2025-01-24 CVE-2024-13680 Codepeople SQL Injection vulnerability in Codepeople Form Builder CP

The Form Builder CP plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter of the 'CP_EASY_FORM_WILL_APPEAR_HERE' shortcode in all versions up to, and including, 1.2.41 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.

6.5
2025-01-23 CVE-2024-13236 Tainacan SQL Injection vulnerability in Tainacan

The Tainacan plugin for WordPress is vulnerable to SQL Injection via the 'collection_id' parameter in all versions up to, and including, 0.21.12 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.

6.5
2025-01-21 CVE-2023-37030 Linuxfoundation NULL Pointer Dereference vulnerability in Linuxfoundation Magma

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `eNB_UE_S1AP_ID` field.

6.5
2025-01-21 CVE-2023-37031 Linuxfoundation NULL Pointer Dereference vulnerability in Linuxfoundation Magma

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `eNB Configuration Transfer` packet missing its required `Target eNB ID` field.

6.5
2025-01-21 CVE-2023-37033 Linuxfoundation NULL Pointer Dereference vulnerability in Linuxfoundation Magma

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `EUTRAN_CGI` field.

6.5
2025-01-21 CVE-2023-37034 Linuxfoundation NULL Pointer Dereference vulnerability in Linuxfoundation Magma

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `TAI` field.

6.5
2025-01-21 CVE-2023-37036 Linuxfoundation NULL Pointer Dereference vulnerability in Linuxfoundation Magma

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Uplink NAS Transport` packet missing an expected `ENB_UE_S1AP_ID` field.

6.5
2025-01-21 CVE-2023-37037 Linuxfoundation NULL Pointer Dereference vulnerability in Linuxfoundation Magma

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `S1Setup Request` packet missing an expected `Supported TAs` field.

6.5
2025-01-21 CVE-2023-37038 Linuxfoundation NULL Pointer Dereference vulnerability in Linuxfoundation Magma

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Uplink NAS Transport` packet missing an expected `MME_UE_S1AP_ID` field.

6.5
2025-01-21 CVE-2025-21552 Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security).
6.5
2025-01-21 CVE-2025-24461 Jetbrains Missing Authorization vulnerability in Jetbrains Teamcity 2024.12.1

In JetBrains TeamCity before 2024.12.1 decryption of connection secrets without proper permissions was possible via Test Connection endpoint

6.5
2025-01-25 CVE-2024-11825 The Broadstreet plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘zone’ parameter in all versions up to, and including, 1.50.3 due to insufficient input sanitization and output escaping.
6.4
2025-01-25 CVE-2024-12512 The Ask Me Anything (Anonymously) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'askmeanythingpeople' shortcode in all versions up to, and including, 1.6 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2025-01-25 CVE-2024-12529 The brodos.net Onlineshop Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'BrodosCategory' shortcode in all versions up to, and including, 2.0.2 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2025-01-25 CVE-2024-12816 The NOTICE BOARD BY TOWKIR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'notice-board' shortcode in all versions up to, and including, 3.1 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2025-01-25 CVE-2024-12817 The Etsy Importer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'product_link' shortcode in all versions up to, and including, 1.4.2 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2025-01-25 CVE-2024-10552 The Flexmls® IDX Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘api_key’ and 'api_secret' parameters in all versions up to, and including, 3.14.26 due to insufficient input sanitization and output escaping.
6.4
2025-01-25 CVE-2024-13721 The Plethora Plugins Tabs + Accordions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the anchor parameter in all versions up to, and including, 1.1.8 due to insufficient input sanitization and output escaping.
6.4
2025-01-23 CVE-2025-23227 IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 through 7.3.0.11 is vulnerable to stored cross-site scripting.
6.4
2025-01-23 CVE-2023-50309 IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to stored cross-site scripting.
6.4
2025-01-22 CVE-2024-12477 The Avada Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 3.11.11 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2025-01-21 CVE-2024-11226 The FireCask Like & Share Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'width' parameter in all versions up to, and including, 1.2 due to insufficient input sanitization and output escaping.
6.4
2025-01-21 CVE-2025-0450 The Betheme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's custom JS functionality in all versions up to, and including, 27.6.1 due to insufficient input sanitization and output escaping on user supplied attributes.
6.4
2025-01-25 CVE-2024-35148 IBM Maximo Application Suite 8.10.10, 8.11.7, and 9.0 - Monitor Component is vulnerable to SQL injection.
6.3
2025-01-24 CVE-2025-0702 A vulnerability classified as critical was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d.
6.3
2025-01-24 CVE-2025-0700 A vulnerability was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d.
6.3
2025-01-24 CVE-2025-0701 A vulnerability classified as critical has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d.
6.3
2025-01-24 CVE-2025-0698 A vulnerability was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d.
6.3
2025-01-24 CVE-2025-0699 A vulnerability was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d.
6.3
2025-01-26 CVE-2023-50945 IBM Common Licensing 9.0 stores user credentials in plain clear text which can be read by a local user.
6.2
2025-01-26 CVE-2024-31906 IBM Automation Decision Services 23.0.2 allows web pages to be stored locally which can be read by another user on the system.
6.2
2025-01-26 CVE-2024-12334 Codexpert Cross-site Scripting vulnerability in Codexpert WC Affiliate

The WC Affiliate – A Complete WooCommerce Affiliate Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via any parameter in all versions up to, and including, 2.4 due to insufficient input sanitization and output escaping.

6.1
2025-01-26 CVE-2024-10636 The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘content’ parameter in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency) due to insufficient input sanitization and output escaping.
6.1
2025-01-25 CVE-2024-35145 IBM Maximo Application Suite 9.0.0 - Monitor Component is vulnerable to cross-site scripting.
6.1
2025-01-25 CVE-2024-12076 The Target Video Easy Publish plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.8.3.
6.1
2025-01-25 CVE-2024-13467 MR Kalathiya Cross-site Scripting vulnerability in Mr-Kalathiya WP Contect Form7 Email Spam Blocker

The WP Contact Form7 Email Spam Blocker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'post' parameter in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping.

6.1
2025-01-23 CVE-2024-57386 Wallosapp Cross-site Scripting vulnerability in Wallosapp Wallos 2.41.0

Cross Site Scripting vulnerability in Wallos v.2.41.0 allows a remote attacker to execute arbitrary code via the profile picture function.

6.1
2025-01-23 CVE-2024-57556 Nbubna Cross-site Scripting vulnerability in Nbubna Store

Cross Site Scripting vulnerability in nbubna store v.2.14.2 and before allows a remote attacker to execute arbitrary code via the store.deep.js component

6.1
2025-01-23 CVE-2024-13422 The SEO Blogger to WordPress Migration using 301 Redirection plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'url' parameter in all versions up to, and including, 0.4.8 due to insufficient input sanitization and output escaping.
6.1
2025-01-22 CVE-2024-13319 Themify Cross-site Scripting vulnerability in Themify Builder

The Themify Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 7.6.5.

6.1
2025-01-22 CVE-2024-13406 Icopydoc Cross-site Scripting vulnerability in Icopydoc XML for Google Merchant Center

The XML for Google Merchant Center plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'feed_id' parameter in all versions up to, and including, 3.0.11 due to insufficient input sanitization and output escaping.

6.1
2025-01-21 CVE-2025-21550 Vulnerability in the Oracle Financial Services Behavior Detection Platform product of Oracle Financial Services Applications (component: Web UI).
6.1
2025-01-21 CVE-2025-24459 Jetbrains Cross-site Scripting vulnerability in Jetbrains Teamcity

In JetBrains TeamCity before 2024.12.1 reflected XSS was possible on the Vault Connection page

6.1
2025-01-21 CVE-2024-13444 The wp-greet plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.2.
6.1
2025-01-21 CVE-2024-12005 Infinitescript Cross-Site Request Forgery (CSRF) vulnerability in Infinitescript Wp-Bibtex

The WP-BibTeX plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.0.1.

6.1
2025-01-21 CVE-2024-13404 Ylefebvre Cross-site Scripting vulnerability in Ylefebvre Link Library

The Link Library plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'searchll' parameter in all versions up to, and including, 7.7.2 due to insufficient input sanitization and output escaping.

6.1
2025-01-20 CVE-2025-0583 The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks.
6.1
2025-01-23 CVE-2024-45672 IBM Security Verify Bridge 1.0.0 through 1.0.15 could allow a local privileged user to overwrite files due to excessive privileges granted to the agent.
6.0
2025-01-21 CVE-2025-21551 Vulnerability in the Oracle Solaris product of Oracle Systems (component: File system).
6.0
2025-01-24 CVE-2024-41757 IBM Concert Software 1.0.0 and 1.0.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security.
5.9
2025-01-20 CVE-2024-22347 IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0.
5.9
2025-01-20 CVE-2025-0580 A vulnerability was found in Shiprocket Module 3 on OpenCart.
5.6
2025-01-23 CVE-2024-10539 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Uyumsoft Informatin Systems Uyumsoft ERP allows XSS Using Invalid Characters, Reflected XSS.This issue affects Uyumsoft ERP: before Erp4.2109.166p45.
5.5
2025-01-21 CVE-2025-24457 Jetbrains Information Exposure Through Log Files vulnerability in Jetbrains Youtrack

In JetBrains YouTrack before 2024.3.55417 permanent tokens could be exposed in logs

5.5
2025-01-21 CVE-2024-57940 Linux Infinite Loop vulnerability in Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: exfat: fix the infinite loop in exfat_readdir() If the file system is corrupted so that a cluster is linked to itself in the cluster chain, and there is an unused directory entry in the cluster, 'dentry' will not be incremented, causing condition 'dentry < max_dentries' unable to prevent an infinite loop. This infinite loop causes s_lock not to be released, and other tasks will hang, such as exfat_sync_fs(). This commit stops traversing the cluster chain when there is unused directory entry in the cluster to avoid this infinite loop.

5.5
2025-01-21 CVE-2024-57944 Linux NULL Pointer Dereference vulnerability in Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1298: Add NULL check in ads1298_init devm_kasprintf() can return a NULL pointer on failure.

5.5
2025-01-21 CVE-2025-21658 Linux NULL Pointer Dereference vulnerability in Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: btrfs: avoid NULL pointer dereference if no valid extent tree [BUG] Syzbot reported a crash with the following call trace: BTRFS info (device loop0): scrub: started on devid 1 BUG: kernel NULL pointer dereference, address: 0000000000000208 #PF: supervisor read access in kernel mode #PF: error_code(0x0000) - not-present page PGD 106e70067 P4D 106e70067 PUD 107143067 PMD 0 Oops: Oops: 0000 [#1] PREEMPT SMP NOPTI CPU: 1 UID: 0 PID: 689 Comm: repro Kdump: loaded Tainted: G O 6.13.0-rc4-custom+ #206 Tainted: [O]=OOT_MODULE Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS unknown 02/02/2022 RIP: 0010:find_first_extent_item+0x26/0x1f0 [btrfs] Call Trace: <TASK> scrub_find_fill_first_stripe+0x13d/0x3b0 [btrfs] scrub_simple_mirror+0x175/0x260 [btrfs] scrub_stripe+0x5d4/0x6c0 [btrfs] scrub_chunk+0xbb/0x170 [btrfs] scrub_enumerate_chunks+0x2f4/0x5f0 [btrfs] btrfs_scrub_dev+0x240/0x600 [btrfs] btrfs_ioctl+0x1dc8/0x2fa0 [btrfs] ? do_sys_openat2+0xa5/0xf0 __x64_sys_ioctl+0x97/0xc0 do_syscall_64+0x4f/0x120 entry_SYSCALL_64_after_hwframe+0x76/0x7e </TASK> [CAUSE] The reproducer is using a corrupted image where extent tree root is corrupted, thus forcing to use "rescue=all,ro" mount option to mount the image. Then it triggered a scrub, but since scrub relies on extent tree to find where the data/metadata extents are, scrub_find_fill_first_stripe() relies on an non-empty extent root. But unfortunately scrub_find_fill_first_stripe() doesn't really expect an NULL pointer for extent root, it use extent_root to grab fs_info and triggered a NULL pointer dereference. [FIX] Add an extra check for a valid extent root at the beginning of scrub_find_fill_first_stripe(). The new error path is introduced by 42437a6386ff ("btrfs: introduce mount option rescue=ignorebadroots"), but that's pretty old, and later commit b979547513ff ("btrfs: scrub: introduce helper to find and fill sector info for a scrub_stripe") changed how we do scrub. So for kernels older than 6.6, the fix will need manual backport.

5.5
2025-01-21 CVE-2024-57933 Linux NULL Pointer Dereference vulnerability in Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: gve: guard XSK operations on the existence of queues This patch predicates the enabling and disabling of XSK pools on the existence of queues.

5.5
2025-01-21 CVE-2024-57938 Linux Integer Overflow or Wraparound vulnerability in Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: net/sctp: Prevent autoclose integer overflow in sctp_association_init() While by default max_autoclose equals to INT_MAX / HZ, one may set net.sctp.max_autoclose to UINT_MAX.

5.5
2025-01-21 CVE-2024-45091 IBM Information Exposure Through Log Files vulnerability in IBM Urbancode Deploy

IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.24, 7.1 through 7.1.2.10, and 7.2 through 7.2.3.13 stores potentially sensitive information in log files that could be read by a local user with access to HTTP request logs.

5.5
2025-01-25 CVE-2024-35112 IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
5.4
2025-01-25 CVE-2025-0350 Elegantthemes Cross-site Scripting vulnerability in Elegantthemes Carousel Maker for Divi

The Divi Carousel Maker – Image, Logo, Testimonial, Post Carousel & More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Carousel and Logo Carousel in all versions up to, and including, 2.0.4 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-25 CVE-2024-13441 Ylefebvre Cross-site Scripting vulnerability in Ylefebvre Bilingual Linker

The Bilingual Linker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the bl_otherlang_link_1 parameter in all versions up to, and including, 2.4 due to insufficient input sanitization and output escaping.

5.4
2025-01-25 CVE-2024-13458 Notice Cross-site Scripting vulnerability in Notice FAQ

The WordPress SEO Friendly Accordion FAQ with AI assisted content generation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'noticefaq' shortcode in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-25 CVE-2024-13548 Wppug Cross-site Scripting vulnerability in Wppug Power UPS for Elementor

The Power Ups for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'magic-button' shortcode in all versions up to, and including, 1.2.2 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-25 CVE-2024-13551 Paulrosen Cross-site Scripting vulnerability in Paulrosen ABC Notation

The ABC Notation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'abcjs' shortcode in all versions up to, and including, 6.1.3 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-25 CVE-2024-13586 Dineshrawat Cross-site Scripting vulnerability in Dineshrawat Masy Gallery

The Masy Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'justified-gallery' shortcode in all versions up to, and including, 1.7 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-25 CVE-2024-13599 Thimpress Cross-site Scripting vulnerability in Thimpress Learnpress

The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.2.7.5 due to insufficient input sanitization and output escaping of a lesson name.

5.4
2025-01-24 CVE-2025-21262 Microsoft Unspecified vulnerability in Microsoft Edge Chromium

User Interface (UI) Misrepresentation of Critical Information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network

5.4
2025-01-24 CVE-2024-11913 Buddydev Server-Side Request Forgery (SSRF) vulnerability in Buddydev Activity Plus Reloaded for Buddypress

The Activity Plus Reloaded for BuddyPress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and including, 1.1.1 via the 'ajax_preview_link' function.

5.4
2025-01-24 CVE-2024-13354 Cyberchimps Cross-site Scripting vulnerability in Cyberchimps Responsive Addons

The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTML tags in several widgets in all versions up to, and including, 1.6.4 due to insufficient input sanitization and output escaping.

5.4
2025-01-24 CVE-2024-13542 Agenceseo Cross-site Scripting vulnerability in Agenceseo WP Google Street View

The WP Google Street View (with 360° virtual tour) & Google maps + Local SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpgsv' shortcode in all versions up to, and including, 1.1.3 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-24 CVE-2024-13572 Nfusionsolutions Cross-site Scripting vulnerability in Nfusionsolutions Precious Metals Charts and Widgets

The Precious Metals Charts and Widgets for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'nfusion-widget' shortcode in all versions up to, and including, 1.2.8 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-24 CVE-2024-12494 Bmltenabled Cross-site Scripting vulnerability in Bmltenabled Meeting MAP

The BMLT Meeting Map plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'bmlt_meeting_map' shortcode in all versions up to, and including, 2.6.1 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-24 CVE-2024-13583 Come2Theweb Cross-site Scripting vulnerability in Come2Theweb Simple Gallery With Filter

The Simple Gallery with Filter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'c2tw_sgwf' shortcode in all versions up to, and including, 2.0 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-24 CVE-2024-13659 Listamester Cross-site Scripting vulnerability in Listamester

The Listamester plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'listamester' shortcode in all versions up to, and including, 2.3.4 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-23 CVE-2024-12118 Theeventscalendar Cross-site Scripting vulnerability in Theeventscalendar the Events Calendar

The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Event Calendar Link Widget through the html_tag attribute in all versions up to, and including, 6.9.0 due to insufficient input sanitization and output escaping.

5.4
2025-01-23 CVE-2024-12504 Videowhisper Cross-site Scripting vulnerability in Videowhisper Broadcast Live Video

The Broadcast Live Video – Live Streaming : HTML5, WebRTC, HLS, RTSP, RTMP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_hls' shortcode in all versions up to, and including, 6.1.9 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-23 CVE-2024-13340 Pluginus Cross-site Scripting vulnerability in Pluginus Meta Data and Taxonomies Filter

The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mdf_results_by_ajax' shortcode in all versions up to, and including, 1.3.3.6 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-23 CVE-2024-13389 Cliptakes Cross-site Scripting vulnerability in Cliptakes

The Cliptakes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'cliptakes_input_email' shortcode in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-23 CVE-2024-12043 Bdthemes Cross-site Scripting vulnerability in Bdthemes Prime Slider

The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Post Slider and Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'social_link_title' parameter of the 'blog' widget in all versions up to, and including, 3.16.5 due to insufficient input sanitization and output escaping.

5.4
2025-01-22 CVE-2025-0604 A flaw was found in Keycloak.
5.4
2025-01-22 CVE-2024-13360 Aipower Server-Side Request Forgery (SSRF) vulnerability in Aipower

The AI Power: Complete AI Pack plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.8.96 via the wpaicg_troubleshoot_add_vector().

5.4
2025-01-22 CVE-2024-12117 Gambit Cross-site Scripting vulnerability in Gambit Stackable

The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter of the Button block in all versions up to, and including, 3.13.11 due to insufficient input sanitization and output escaping.

5.4
2025-01-22 CVE-2024-13584 Videowhisper Cross-site Scripting vulnerability in Videowhisper Picture Gallery

The Picture Gallery – Frontend Image Uploads, AJAX Photo List plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_pictures' shortcode in all versions up to, and including, 1.5.19 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-22 CVE-2024-13590 Ayecode Cross-site Scripting vulnerability in Ayecode Ketchup Shortcodes

The Ketchup Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'spacer' shortcode in all versions up to, and including, 0.1.2 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-21 CVE-2025-0371 Crocoblock Cross-site Scripting vulnerability in Crocoblock Jetelements

The JetElements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several widgets in all versions up to, and including, 2.7.2.1 due to insufficient input sanitization and output escaping on user supplied attributes.

5.4
2025-01-25 CVE-2024-35144 IBM Maximo Application Suite 8.10, 8.11, and 9.0 - Monitor Component stores source code on the web server that could aid in further attacks against the system.
5.3
2025-01-25 CVE-2024-35150 IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries.
5.3
2025-01-25 CVE-2023-38012 IBM Cloud Pak System 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could allow a remote attacker to traverse directories on the system.
5.3
2025-01-25 CVE-2023-38013 IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information in HTTP responses that could aid in further attacks against the system.
5.3
2025-01-25 CVE-2023-38713 IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information about the system that could aid in further attacks against the system.
5.3
2025-01-25 CVE-2023-38714 IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information about the system that could aid in further attacks against the system.
5.3
2025-01-25 CVE-2023-38716 IBM Cloud Pak System 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could disclose sensitive information about the system that could aid in further attacks against the system.
5.3
2025-01-25 CVE-2024-35114 IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to enumerate usernames due to an observable discrepancy between login attempts.
5.3
2025-01-25 CVE-2024-35134 IBM Analytics Content Hub 2.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
5.3
2025-01-24 CVE-2025-0704 A vulnerability, which was classified as problematic, was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d.
5.3
2025-01-24 CVE-2024-40706 IBM InfoSphere Information Server 11.7 could allow a remote user to obtain sensitive version information that could aid in further attacks against the system.
5.3
2025-01-24 CVE-2025-0697 A vulnerability, which was classified as problematic, was found in Telstra Smart Modem Gen 2 up to 20250115.
5.3
2025-01-22 CVE-2025-20128 A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an integer underflow in a bounds check that allows for a heap buffer overflow read.
5.3
2025-01-22 CVE-2024-13426 WP Polls Project SQL Injection vulnerability in Wp-Polls Project Wp-Polls

The WP-Polls plugin for WordPress is vulnerable to SQL Injection via COOKIE in all versions up to, and including, 2.77.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.

5.3
2025-01-21 CVE-2024-13230 The Social Share, Social Login and Social Comments Plugin – Super Socializer plugin for WordPress is vulnerable to Limited SQL Injection via the ‘SuperSocializerKey’ parameter in all versions up to, and including, 7.14 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
5.3
2025-01-21 CVE-2024-13536 The 1003 Mortgage Application plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.87.
5.3
2025-01-20 CVE-2024-22348 IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0.
5.3
2025-01-20 CVE-2025-0584 The a+HRD from aEnrich Technology has a Server-side Request Forgery, allowing unauthenticated remote attackers to exploit this vulnerability to probe internal network.
5.3
2025-01-26 CVE-2024-13505 AYS PRO Cross-site Scripting vulnerability in Ays-Pro Survey Maker

The Survey Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ays_sections[5][questions][8][title]’ parameter in all versions up to, and including, 5.1.3.3 due to insufficient input sanitization and output escaping.

4.8
2025-01-21 CVE-2024-57934 Linux NULL Pointer Dereference vulnerability in Linux Kernel

In the Linux kernel, the following vulnerability has been resolved: fgraph: Add READ_ONCE() when accessing fgraph_array[] In __ftrace_return_to_handler(), a loop iterates over the fgraph_array[] elements, which are fgraph_ops.

4.7
2025-01-23 CVE-2023-32340 IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to cross-site scripting.
4.6
2025-01-20 CVE-2024-13524 A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic.
4.5
2025-01-22 CVE-2024-51457 IBM Robotic Process Automation for Cloud Pak 21.0.0 through 21.0.7.19 and 23.0.0 through 23.0.19 is vulnerable to cross-site scripting.
4.4
2025-01-25 CVE-2023-38271 IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could allow an authenticated user to obtain sensitive information from log files.
4.3
2025-01-25 CVE-2024-35111 IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.
4.3
2025-01-25 CVE-2024-35113 IBM Control Center 6.2.1 and 6.3.1 could allow an authenticated user to obtain sensitive information exposed through a directory listing.
4.3
2025-01-25 CVE-2024-13449 Ibsofts Missing Authorization vulnerability in Ibsofts Boom Fest

The Boom Fest plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'bf_admin_action' function in all versions up to, and including, 2.2.1.

4.3
2025-01-25 CVE-2024-12113 The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the delete_user_review() and delete_review() functions in all versions up to, and including, 1.3.2.
4.3
2025-01-25 CVE-2024-12826 The GoHero Store Customizer for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wooh_action_settings_save_frontend() function in all versions up to, and including, 3.5.
4.3
2025-01-25 CVE-2024-13368 Kainelabs Missing Authorization vulnerability in Kainelabs Youzify

The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the youzify_offer_banner() function in all versions up to, and including, 1.3.2.

4.3
2025-01-25 CVE-2024-13709 The Linear plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.1.
4.3
2025-01-24 CVE-2025-0703 A vulnerability, which was classified as problematic, has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d.
4.3
2025-01-24 CVE-2025-0705 A vulnerability has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d and classified as problematic.
4.3
2025-01-24 CVE-2024-10324 Rometheme Unspecified vulnerability in Rometheme Romethemekit for Elementor

The RomethemeKit For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.5.2 via the register_controls function in widgets/offcanvas-rometheme.php.

4.3
2025-01-24 CVE-2024-13335 Templatescoder Missing Authorization vulnerability in Templatescoder Spexo Addons for Elementor

The Spexo Addons for Elementor – Free Elementor Addons, Widgets and Templates plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the tmpcoder_theme_install_func() function in all versions up to, and including, 1.0.14.

4.3
2025-01-24 CVE-2024-13683 Sperse Cross-Site Request Forgery (CSRF) vulnerability in Sperse Automate HUB

The Automate Hub Free by Sperse.IO plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.7.0.

4.3
2025-01-23 CVE-2024-13511 Variation Swatches FOR Woocommerce Project Cross-Site Request Forgery (CSRF) vulnerability in Variation Swatches for Woocommerce Project Variation Swatches for Woocommerce

The Variation Swatches for WooCommerce plugin, in all versions starting at 1.0.8 up until 1.3.2, contains a vulnerability due to improper nonce verification in its settings reset functionality.

4.3
2025-01-22 CVE-2024-13447 Thimpress Missing Authorization vulnerability in Thimpress WP Hotel Booking

The WP Hotel Booking plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the hotel_booking_load_order_user AJAX action in all versions up to, and including, 2.1.6.

4.3
2025-01-22 CVE-2024-12879 Quantumcloud Missing Authorization vulnerability in Quantumcloud Wpot

The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'qc_wp_latest_update_check_pro' function in all versions up to, and including, 13.5.5.

4.3
2025-01-21 CVE-2025-24460 Jetbrains Incorrect Authorization vulnerability in Jetbrains Teamcity

In JetBrains TeamCity before 2024.12.1 improper access control allowed to see Projects’ names in the agent pool

4.3
2025-01-20 CVE-2025-0576 A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic.
4.3
2025-01-26 CVE-2023-38009 IBM Cognos Mobile Client 1.1 iOS may be vulnerable to information disclosure through man in the middle techniques due to the lack of certificate pinning.
4.2
2025-01-20 CVE-2024-22349 IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0.
4.0

8 Low Vulnerabilities

DATE CVE VENDOR VULNERABILITY CVSS
2025-01-24 CVE-2025-0710 A vulnerability classified as problematic has been found in CampCodes School Management Software 1.0.
3.5
2025-01-24 CVE-2025-0708 A vulnerability was found in fumiao opencms 2.2.
3.5
2025-01-20 CVE-2025-0581 A vulnerability classified as problematic has been found in CampCodes School Management Software 1.0.
3.5
2025-01-20 CVE-2025-0578 A vulnerability was found in Facile Sistemas Cloud Apps up to 20250107.
3.5
2025-01-26 CVE-2025-0720 A vulnerability was found in Microword eScan Antivirus 7.0.32 on Linux.
3.3
2025-01-24 CVE-2024-35122 IBM i 7.2, 7.3, 7.4, and 7.5 is vulnerable to a file level local denial of service caused by an insufficient authority requirement.
2.8
2025-01-24 CVE-2025-0709 A vulnerability was found in Dcat-Admin 2.2.1-beta.
2.4
2025-01-24 CVE-2025-0706 A vulnerability was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d and classified as problematic.
2.4