Weekly Vulnerabilities Reports > January 20 to 26, 2025
Overview
205 new vulnerabilities reported during this period, including 14 critical vulnerabilities and 45 high severity vulnerabilities. This weekly summary report vulnerabilities in 85 products from 71 vendors including Linuxfoundation, Linux, Jetbrains, Aipower, and Openimageio. Vulnerabilities are notably categorized as "Cross-site Scripting", "Missing Authorization", "NULL Pointer Dereference", "SQL Injection", and "Code Injection".
- 178 reported vulnerabilities are remotely exploitables.
- 84 reported vulnerabilities are related to weaknesses in OWASP Top Ten.
- 96 reported vulnerabilities are exploitable by an anonymous user.
- Linuxfoundation has the most reported vulnerabilities, with 15 reported vulnerabilities.
- Openimageio has the most reported critical vulnerabilities, with 3 reported vulnerabilities.
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
VULNERABILITIES
EXPLOITABLE
EXPLOITABLE
AVAILABLE
ANONYMOUSLY
WEB APPLICATION
Vulnerability Details
The following table list reported vulnerabilities for the period covered by this report:
14 Critical Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2025-01-25 | CVE-2025-0357 | The WPBookit plugin for WordPress is vulnerable to arbitrary file uploads due to insufficient file type validation in the 'WPB_Profile_controller::handle_image_upload' function in versions up to, and including, 1.6.9. | 9.8 | |
2025-01-24 | CVE-2024-13545 | G5Plus | Unspecified vulnerability in G5Plus Ultimate Bootstrap Elements for Elementor The Bootstrap Ultimate theme for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.4.9 via the path parameter. | 9.8 |
2025-01-23 | CVE-2023-46400 | Kwhotel | Improper Neutralization of Formula Elements in a CSV File vulnerability in Kwhotel 0.47 KWHotel 0.47 is vulnerable to CSV Formula Injection in the add guest function. | 9.8 |
2025-01-23 | CVE-2023-46401 | Kwhotel | Improper Neutralization of Formula Elements in a CSV File vulnerability in Kwhotel 0.47 KWHotel 0.47 is vulnerable to CSV Formula Injection in the invoice adding function. | 9.8 |
2025-01-23 | CVE-2024-55192 | Openimageio | Out-of-bounds Write vulnerability in Openimageio 3.1.0.0 OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component OpenImageIO_v3_1_0::farmhash::inlined::Fetch64(char const*). | 9.8 |
2025-01-23 | CVE-2024-55193 | Openimageio | Unspecified vulnerability in Openimageio 3.1.0.0 OpenImageIO v3.1.0.0dev was discovered to contain a segmentation violation via the component /OpenImageIO/string_view.h. | 9.8 |
2025-01-23 | CVE-2024-55194 | Openimageio | Out-of-bounds Write vulnerability in Openimageio 3.1.0.0 OpenImageIO v3.1.0.0dev was discovered to contain a heap overflow via the component /OpenImageIO/fmath.h. | 9.8 |
2025-01-23 | CVE-2024-57328 | Projectworlds | SQL Injection vulnerability in Projectworlds Online Food Ordering System 1.0 A SQL Injection vulnerability exists in the login form of Online Food Ordering System v1.0. | 9.8 |
2025-01-23 | CVE-2025-23006 | Sonicwall | Unspecified vulnerability in Sonicwall products Pre-authentication deserialization of untrusted data vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) and Central Management Console (CMC), which in specific conditions could potentially enable a remote unauthenticated attacker to execute arbitrary OS commands. | 9.8 |
2025-01-23 | CVE-2024-13234 | Woobewoo | SQL Injection vulnerability in Woobewoo Product Table 1.9.5 The Product Table by WBW plugin for WordPress is vulnerable to SQL Injection via the 'additionalCondition' parameter in all versions up to, and including, 2.1.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 9.8 |
2025-01-22 | CVE-2024-12857 | Scriptsbundle | Missing Authentication for Critical Function vulnerability in Scriptsbundle Adforest The AdForest theme for WordPress is vulnerable to authentication bypass in all versions up to, and including, 5.1.8. | 9.8 |
2025-01-22 | CVE-2024-13091 | Wpbot | Unrestricted Upload of File with Dangerous Type vulnerability in Wpbot Wpot The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'qcld_wpcfb_file_upload' function in all versions up to, and including, 13.5.4. | 9.8 |
2025-01-20 | CVE-2024-45647 | IBM | Unspecified vulnerability in IBM products IBM Security Verify Access 10.0.0 through 10.0.8 and IBM Security Verify Access Docker 10.0.0 through 10.0.8 could allow could an unverified user to change the password of an expired user without prior knowledge of that password. | 9.8 |
2025-01-20 | CVE-2025-0585 | The a+HRD from aEnrich Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents. | 9.8 |
45 High Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2025-01-26 | CVE-2024-11641 | Vikwp | Cross-Site Request Forgery (CSRF) vulnerability in Vikwp Vikbooking Hotel Booking Engine & PMS The VikBooking Hotel Booking Engine & PMS plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.7.2. | 8.8 |
2025-01-26 | CVE-2024-11936 | Mvpthemes | Missing Authorization vulnerability in Mvpthemes ZOX News The Zox News theme for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the 'backup_options' and 'restore_options' function in all versions up to, and including, 3.16.0. | 8.8 |
2025-01-25 | CVE-2024-39750 | IBM Analytics Content Hub 2.0 is vulnerable to a buffer overflow due to improper return length checking. | 8.8 | |
2025-01-25 | CVE-2025-0682 | The ThemeREX Addons plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.33.0 via the 'trx_sc_reviews' shortcode 'type' attribute. | 8.8 | |
2025-01-24 | CVE-2025-24753 | Kadencewp | Missing Authorization vulnerability in Kadencewp Gutenberg Blocks With AI Missing Authorization vulnerability in Kadence WP Gutenberg Blocks by Kadence Blocks allows Exploiting Incorrectly Configured Access Control Security Levels. | 8.8 |
2025-01-24 | CVE-2024-41739 | IBM Cognos Dashboards 4.0.7 and 5.0.0 on Cloud Pak for Data could allow a remote attacker to perform unauthorized actions due to dependency confusion. | 8.8 | |
2025-01-24 | CVE-2024-13408 | Pickplugins | Unspecified vulnerability in Pickplugins Post Grid The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.10 via the 'theme' attribute of the `pgcu` shortcode. | 8.8 |
2025-01-24 | CVE-2024-13409 | Wpwax | Unspecified vulnerability in Wpwax Post Grid, Slider & Carousel Ultimate The Post Grid, Slider & Carousel Ultimate – with Shortcode, Gutenberg Block & Elementor Widget plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 1.6.10 via the 'theme' parameter of the post_type_ajax_handler() function. | 8.8 |
2025-01-23 | CVE-2024-13593 | Bmltenabled | Unspecified vulnerability in Bmltenabled Meeting MAP The BMLT Meeting Map plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.6.0 via the 'bmlt_meeting_map' shortcode. | 8.8 |
2025-01-22 | CVE-2024-31903 | IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.5 and 6.2.0.0 through 6.2.0.2 allow an attacker on the local network to execute arbitrary code on the system, caused by the deserialization of untrusted data. | 8.8 | |
2025-01-22 | CVE-2024-13361 | Aipower | Missing Authorization vulnerability in Aipower The AI Power: Complete AI Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the wpaicg_save_image_media function in all versions up to, and including, 1.8.96. | 8.8 |
2025-01-21 | CVE-2025-24456 | Jetbrains | Missing Authentication for Critical Function vulnerability in Jetbrains HUB In JetBrains Hub before 2024.3.55417 privilege escalation was possible via LDAP authentication mapping | 8.8 |
2025-01-21 | CVE-2024-10936 | Instawp | Deserialization of Untrusted Data vulnerability in Instawp String Locator The String locator plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 2.6.6 via deserialization of untrusted input in the 'recursive_unserialize_replace' function. | 8.8 |
2025-01-26 | CVE-2024-10705 | Themeisle | Server-Side Request Forgery (SSRF) vulnerability in Themeisle multiple Page Generator The Multiple Page Generator Plugin – MPG plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.0.5 via the 'mpg_download_file_by_link' function. | 8.1 |
2025-01-24 | CVE-2024-25034 | IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the type of file in the File Manager T1 process. | 8.0 | |
2025-01-24 | CVE-2024-40693 | IBM Planning Analytics 2.0 and 2.1 could be vulnerable to malicious file upload by not validating the content of the file uploaded to the web interface. | 8.0 | |
2025-01-24 | CVE-2025-0707 | A vulnerability was found in Rise Group Rise Mode Temp CPU 2.1. | 7.8 | |
2025-01-21 | CVE-2025-24458 | Jetbrains | Authentication Bypass by Spoofing vulnerability in Jetbrains Youtrack In JetBrains YouTrack before 2024.3.55417 account takeover was possible via spoofed email and Helpdesk integration | 7.8 |
2025-01-26 | CVE-2024-11090 | Stellarwp | Unspecified vulnerability in Stellarwp Membership Plugin - Restrict Content The Membership Plugin – Restrict Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.2.13 via the WordPress core search feature. | 7.5 |
2025-01-26 | CVE-2024-10628 | The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to SQL Injection via the ‘id’ parameter in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 7.5 | |
2025-01-25 | CVE-2024-13562 | Importwp | Unspecified vulnerability in Importwp Import WP The Import WP – Export and Import CSV and XML files to WordPress plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.14.5 via the uploads directory. | 7.5 |
2025-01-22 | CVE-2025-20165 | A vulnerability in the SIP processing subsystem of Cisco BroadWorks could allow an unauthenticated, remote attacker to halt the processing of incoming SIP requests, resulting in a denial of service (DoS) condition. This vulnerability is due to improper memory handling for certain SIP requests. | 7.5 | |
2025-01-22 | CVE-2024-13496 | Gamipress | SQL Injection vulnerability in Gamipress The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versions up to, and including, 7.2.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 7.5 |
2025-01-21 | CVE-2023-37029 | Linuxfoundation | Reachable Assertion vulnerability in Linuxfoundation Magma Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) are susceptible to an assertion-based crash when an oversized NAS packet is received. | 7.5 |
2025-01-21 | CVE-2023-37032 | Linuxfoundation | Out-of-bounds Write vulnerability in Linuxfoundation Magma A Stack-based buffer overflow in the Mobile Management Entity (MME) of Magma versions <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows remote attackers to crash the MME with an unauthenticated cellphone by sending a NAS packet containing an oversized `Emergency Number List` Information Element. | 7.5 |
2025-01-21 | CVE-2024-24416 | Linuxfoundation | Classic Buffer Overflow vulnerability in Linuxfoundation Magma The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_access_point_name_ie function at /3gpp/3gpp_24.008_sm_ies.c. | 7.5 |
2025-01-21 | CVE-2024-24417 | Linuxfoundation | Out-of-bounds Read vulnerability in Linuxfoundation Magma The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_protocol_configuration_options function at /3gpp/3gpp_24.008_sm_ies.c. | 7.5 |
2025-01-21 | CVE-2024-24418 | Linuxfoundation | Classic Buffer Overflow vulnerability in Linuxfoundation Magma The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_pdn_address function at /nas/ies/PdnAddress.cpp. | 7.5 |
2025-01-21 | CVE-2024-24419 | Linuxfoundation | Classic Buffer Overflow vulnerability in Linuxfoundation Magma The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_traffic_flow_template_packet_filter function at /3gpp/3gpp_24.008_sm_ies.c. | 7.5 |
2025-01-21 | CVE-2024-24422 | Linuxfoundation | Out-of-bounds Write vulnerability in Linuxfoundation Magma The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a stack overflow in the decode_protocol_configuration_options function at /3gpp/3gpp_24.008_sm_ies.c. | 7.5 |
2025-01-21 | CVE-2024-24423 | Linuxfoundation | Out-of-bounds Write vulnerability in Linuxfoundation Magma The Linux Foundation Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) was discovered to contain a buffer overflow in the decode_esm_message_container function at /nas/ies/EsmMessageContainer.cpp. | 7.5 |
2025-01-21 | CVE-2024-24427 | Open5Gs | Reachable Assertion vulnerability in Open5Gs A reachable assertion in the amf_ue_set_suci function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NAS packet. | 7.5 |
2025-01-21 | CVE-2024-24428 | Open5Gs | Reachable Assertion vulnerability in Open5Gs A reachable assertion in the oai_nas_5gmm_decode function of Open5GS <= 2.6.4 allows attackers to cause a Denial of Service (DoS) via a crafted NGAP packet. | 7.5 |
2025-01-21 | CVE-2024-43709 | Elastic | Allocation of Resources Without Limits or Throttling vulnerability in Elastic Elasticsearch An allocation of resources without limits or throttling in Elasticsearch can lead to an OutOfMemoryError exception resulting in a crash via a specially crafted query using an SQL function. | 7.5 |
2025-01-21 | CVE-2024-12104 | Atarim | Missing Authorization vulnerability in Atarim Visual Website Collaboration, Feedback & Project Management The Visual Website Collaboration, Feedback & Project Management – Atarim plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the wpf_delete_file and wpf_delete_file functions in all versions up to, and including, 4.0.9. | 7.5 |
2025-01-26 | CVE-2024-10633 | The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency). | 7.3 | |
2025-01-22 | CVE-2024-13495 | Gamipress | Code Injection vulnerability in Gamipress The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via the gamipress_ajax_get_logs() function in all versions up to, and including, 7.2.1. | 7.3 |
2025-01-22 | CVE-2024-13499 | Gamipress | Code Injection vulnerability in Gamipress The The GamiPress – Gamification plugin to reward points, achievements, badges & ranks in WordPress plugin for WordPress is vulnerable to arbitrary shortcode execution via gamipress_do_shortcode() function in all versions up to, and including, 7.2.1. | 7.3 |
2025-01-20 | CVE-2025-0579 | A vulnerability was found in Shiprocket Module 3/4 on OpenCart. | 7.3 | |
2025-01-26 | CVE-2024-10574 | The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'ays_save_google_credentials' function in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency). | 7.2 | |
2025-01-25 | CVE-2024-12600 | The Custom Product Tabs Lite for WooCommerce plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.9.0 via deserialization of untrusted input from the 'frs_woo_product_tabs' parameter. | 7.2 | |
2025-01-22 | CVE-2025-0428 | Aipower | Deserialization of Untrusted Data vulnerability in Aipower The "AI Power: Complete AI Pack" plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.8.96 via deserialization of untrusted input from the $form['post_content'] variable through the wpaicg_export_prompts function. | 7.2 |
2025-01-22 | CVE-2025-0429 | Aipower | Deserialization of Untrusted Data vulnerability in Aipower The "AI Power: Complete AI Pack" plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 1.8.96 via deserialization of untrusted input from the $form['post_content'] variable through the wpaicg_export_ai_forms() function. | 7.2 |
2025-01-20 | CVE-2025-0582 | Angeljudesuarez | Unrestricted Upload of File with Dangerous Type vulnerability in Angeljudesuarez Tailoring Management System 1.0 A vulnerability classified as critical was found in itsourcecode Farm Management System up to 1.0. | 7.2 |
2025-01-20 | CVE-2025-0586 | The a+HRD from aEnrich Technology has an Insecure Deserialization vulnerability, allowing remote attackers with database modification privileges and regular system privileges to perform arbitrary code execution. | 7.2 |
138 Medium Vulnerabilities
DATE | CVE | VENDOR | VULNERABILITY | CVSS |
---|---|---|---|---|
2025-01-26 | CVE-2023-50946 | IBM Common Licensing 9.0 could allow an authenticated user to modify a configuration file that they should not have access to due to a broken authorization mechanism. | 6.5 | |
2025-01-25 | CVE-2024-13450 | Bitapps | Server-Side Request Forgery (SSRF) vulnerability in Bitapps Contact Form Builder The Contact Form by Bit Form: Multi Step Form, Calculation Contact Form, Payment Contact Form & Custom Contact Form builder plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 2.17.4 via the Webhooks integration. | 6.5 |
2025-01-25 | CVE-2024-12885 | The Connections Business Directory plugin for WordPress is vulnerable to arbitrary directory deletion due to insufficient file path validation when deleting a connections image directory in all versions up to, and including, 10.4.66. | 6.5 | |
2025-01-25 | CVE-2024-13370 | Kainelabs | Missing Authorization vulnerability in Kainelabs Youzify The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the save_addon_key_license() function in all versions up to, and including, 1.3.2. | 6.5 |
2025-01-25 | CVE-2024-13550 | Paulrosen | Path Traversal vulnerability in Paulrosen ABC Notation The ABC Notation plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 6.1.3 via the 'file' attribute of the 'abcjs' shortcode. | 6.5 |
2025-01-24 | CVE-2024-13698 | Astoundify | Missing Authorization vulnerability in Astoundify Jobify The Jobify - Job Board WordPress Theme for WordPress is vulnerable to unauthorized access and modification of data due to a missing capability check on the 'download_image_via_ai' and 'generate_image_via_ai' functions in all versions up to, and including, 4.2.7. | 6.5 |
2025-01-24 | CVE-2024-45077 | IBM Maximo Asset Management 7.6.1.3 MXAPIASSET API is vulnerable to unrestricted file upload which allows authenticated low privileged user to upload restricted file types with a simple method of adding a dot to the end of the file name if Maximo is installed on Windows operating system. | 6.5 | |
2025-01-24 | CVE-2024-13594 | Neofix | SQL Injection vulnerability in Neofix Simple Downloads List The Simple Downloads List plugin for WordPress is vulnerable to SQL Injection via the 'category' attribute of the 'neofix_sdl' shortcode in all versions up to, and including, 1.4.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 6.5 |
2025-01-24 | CVE-2024-13680 | Codepeople | SQL Injection vulnerability in Codepeople Form Builder CP The Form Builder CP plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter of the 'CP_EASY_FORM_WILL_APPEAR_HERE' shortcode in all versions up to, and including, 1.2.41 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 6.5 |
2025-01-23 | CVE-2024-13236 | Tainacan | SQL Injection vulnerability in Tainacan The Tainacan plugin for WordPress is vulnerable to SQL Injection via the 'collection_id' parameter in all versions up to, and including, 0.21.12 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 6.5 |
2025-01-21 | CVE-2023-37030 | Linuxfoundation | NULL Pointer Dereference vulnerability in Linuxfoundation Magma A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `eNB_UE_S1AP_ID` field. | 6.5 |
2025-01-21 | CVE-2023-37031 | Linuxfoundation | NULL Pointer Dereference vulnerability in Linuxfoundation Magma A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `eNB Configuration Transfer` packet missing its required `Target eNB ID` field. | 6.5 |
2025-01-21 | CVE-2023-37033 | Linuxfoundation | NULL Pointer Dereference vulnerability in Linuxfoundation Magma A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `EUTRAN_CGI` field. | 6.5 |
2025-01-21 | CVE-2023-37034 | Linuxfoundation | NULL Pointer Dereference vulnerability in Linuxfoundation Magma A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Initial UE Message` packet missing an expected `TAI` field. | 6.5 |
2025-01-21 | CVE-2023-37036 | Linuxfoundation | NULL Pointer Dereference vulnerability in Linuxfoundation Magma A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Uplink NAS Transport` packet missing an expected `ENB_UE_S1AP_ID` field. | 6.5 |
2025-01-21 | CVE-2023-37037 | Linuxfoundation | NULL Pointer Dereference vulnerability in Linuxfoundation Magma A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `S1Setup Request` packet missing an expected `Supported TAs` field. | 6.5 |
2025-01-21 | CVE-2023-37038 | Linuxfoundation | NULL Pointer Dereference vulnerability in Linuxfoundation Magma A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `Uplink NAS Transport` packet missing an expected `MME_UE_S1AP_ID` field. | 6.5 |
2025-01-21 | CVE-2025-21552 | Vulnerability in the JD Edwards EnterpriseOne Orchestrator product of Oracle JD Edwards (component: E1 IOT Orchestrator Security). | 6.5 | |
2025-01-21 | CVE-2025-24461 | Jetbrains | Missing Authorization vulnerability in Jetbrains Teamcity 2024.12.1 In JetBrains TeamCity before 2024.12.1 decryption of connection secrets without proper permissions was possible via Test Connection endpoint | 6.5 |
2025-01-25 | CVE-2024-11825 | The Broadstreet plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘zone’ parameter in all versions up to, and including, 1.50.3 due to insufficient input sanitization and output escaping. | 6.4 | |
2025-01-25 | CVE-2024-12512 | The Ask Me Anything (Anonymously) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'askmeanythingpeople' shortcode in all versions up to, and including, 1.6 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2025-01-25 | CVE-2024-12529 | The brodos.net Onlineshop Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'BrodosCategory' shortcode in all versions up to, and including, 2.0.2 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2025-01-25 | CVE-2024-12816 | The NOTICE BOARD BY TOWKIR plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'notice-board' shortcode in all versions up to, and including, 3.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2025-01-25 | CVE-2024-12817 | The Etsy Importer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'product_link' shortcode in all versions up to, and including, 1.4.2 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2025-01-25 | CVE-2024-10552 | The Flexmls® IDX Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘api_key’ and 'api_secret' parameters in all versions up to, and including, 3.14.26 due to insufficient input sanitization and output escaping. | 6.4 | |
2025-01-25 | CVE-2024-13721 | The Plethora Plugins Tabs + Accordions plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the anchor parameter in all versions up to, and including, 1.1.8 due to insufficient input sanitization and output escaping. | 6.4 | |
2025-01-23 | CVE-2025-23227 | IBM Tivoli Application Dependency Discovery Manager 7.3.0.0 through 7.3.0.11 is vulnerable to stored cross-site scripting. | 6.4 | |
2025-01-23 | CVE-2023-50309 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to stored cross-site scripting. | 6.4 | |
2025-01-22 | CVE-2024-12477 | The Avada Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcodes in all versions up to, and including, 3.11.11 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2025-01-21 | CVE-2024-11226 | The FireCask Like & Share Button plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'width' parameter in all versions up to, and including, 1.2 due to insufficient input sanitization and output escaping. | 6.4 | |
2025-01-21 | CVE-2025-0450 | The Betheme plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's custom JS functionality in all versions up to, and including, 27.6.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 6.4 | |
2025-01-25 | CVE-2024-35148 | IBM Maximo Application Suite 8.10.10, 8.11.7, and 9.0 - Monitor Component is vulnerable to SQL injection. | 6.3 | |
2025-01-24 | CVE-2025-0702 | A vulnerability classified as critical was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. | 6.3 | |
2025-01-24 | CVE-2025-0700 | A vulnerability was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. | 6.3 | |
2025-01-24 | CVE-2025-0701 | A vulnerability classified as critical has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. | 6.3 | |
2025-01-24 | CVE-2025-0698 | A vulnerability was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. | 6.3 | |
2025-01-24 | CVE-2025-0699 | A vulnerability was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. | 6.3 | |
2025-01-26 | CVE-2023-50945 | IBM Common Licensing 9.0 stores user credentials in plain clear text which can be read by a local user. | 6.2 | |
2025-01-26 | CVE-2024-31906 | IBM Automation Decision Services 23.0.2 allows web pages to be stored locally which can be read by another user on the system. | 6.2 | |
2025-01-26 | CVE-2024-12334 | Codexpert | Cross-site Scripting vulnerability in Codexpert WC Affiliate The WC Affiliate – A Complete WooCommerce Affiliate Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via any parameter in all versions up to, and including, 2.4 due to insufficient input sanitization and output escaping. | 6.1 |
2025-01-26 | CVE-2024-10636 | The Quiz Maker Business, Developer, and Agency plugins for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘content’ parameter in all versions up to, and including, 8.8.0 (Business), up to, and including, 21.8.0 (Developer), and up to, and including, 31.8.0 (Agency) due to insufficient input sanitization and output escaping. | 6.1 | |
2025-01-25 | CVE-2024-35145 | IBM Maximo Application Suite 9.0.0 - Monitor Component is vulnerable to cross-site scripting. | 6.1 | |
2025-01-25 | CVE-2024-12076 | The Target Video Easy Publish plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.8.3. | 6.1 | |
2025-01-25 | CVE-2024-13467 | MR Kalathiya | Cross-site Scripting vulnerability in Mr-Kalathiya WP Contect Form7 Email Spam Blocker The WP Contact Form7 Email Spam Blocker plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'post' parameter in all versions up to, and including, 1.0.0 due to insufficient input sanitization and output escaping. | 6.1 |
2025-01-23 | CVE-2024-57386 | Wallosapp | Cross-site Scripting vulnerability in Wallosapp Wallos 2.41.0 Cross Site Scripting vulnerability in Wallos v.2.41.0 allows a remote attacker to execute arbitrary code via the profile picture function. | 6.1 |
2025-01-23 | CVE-2024-57556 | Nbubna | Cross-site Scripting vulnerability in Nbubna Store Cross Site Scripting vulnerability in nbubna store v.2.14.2 and before allows a remote attacker to execute arbitrary code via the store.deep.js component | 6.1 |
2025-01-23 | CVE-2024-13422 | The SEO Blogger to WordPress Migration using 301 Redirection plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'url' parameter in all versions up to, and including, 0.4.8 due to insufficient input sanitization and output escaping. | 6.1 | |
2025-01-22 | CVE-2024-13319 | Themify | Cross-site Scripting vulnerability in Themify Builder The Themify Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and including, 7.6.5. | 6.1 |
2025-01-22 | CVE-2024-13406 | Icopydoc | Cross-site Scripting vulnerability in Icopydoc XML for Google Merchant Center The XML for Google Merchant Center plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'feed_id' parameter in all versions up to, and including, 3.0.11 due to insufficient input sanitization and output escaping. | 6.1 |
2025-01-21 | CVE-2025-21550 | Vulnerability in the Oracle Financial Services Behavior Detection Platform product of Oracle Financial Services Applications (component: Web UI). | 6.1 | |
2025-01-21 | CVE-2025-24459 | Jetbrains | Cross-site Scripting vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2024.12.1 reflected XSS was possible on the Vault Connection page | 6.1 |
2025-01-21 | CVE-2024-13444 | The wp-greet plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.2. | 6.1 | |
2025-01-21 | CVE-2024-12005 | Infinitescript | Cross-Site Request Forgery (CSRF) vulnerability in Infinitescript Wp-Bibtex The WP-BibTeX plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.0.1. | 6.1 |
2025-01-21 | CVE-2024-13404 | Ylefebvre | Cross-site Scripting vulnerability in Ylefebvre Link Library The Link Library plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'searchll' parameter in all versions up to, and including, 7.7.2 due to insufficient input sanitization and output escaping. | 6.1 |
2025-01-20 | CVE-2025-0583 | The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks. | 6.1 | |
2025-01-23 | CVE-2024-45672 | IBM Security Verify Bridge 1.0.0 through 1.0.15 could allow a local privileged user to overwrite files due to excessive privileges granted to the agent. | 6.0 | |
2025-01-21 | CVE-2025-21551 | Vulnerability in the Oracle Solaris product of Oracle Systems (component: File system). | 6.0 | |
2025-01-24 | CVE-2024-41757 | IBM Concert Software 1.0.0 and 1.0.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. | 5.9 | |
2025-01-20 | CVE-2024-22347 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. | 5.9 | |
2025-01-20 | CVE-2025-0580 | A vulnerability was found in Shiprocket Module 3 on OpenCart. | 5.6 | |
2025-01-23 | CVE-2024-10539 | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Uyumsoft Informatin Systems Uyumsoft ERP allows XSS Using Invalid Characters, Reflected XSS.This issue affects Uyumsoft ERP: before Erp4.2109.166p45. | 5.5 | |
2025-01-21 | CVE-2025-24457 | Jetbrains | Information Exposure Through Log Files vulnerability in Jetbrains Youtrack In JetBrains YouTrack before 2024.3.55417 permanent tokens could be exposed in logs | 5.5 |
2025-01-21 | CVE-2024-57940 | Linux | Infinite Loop vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: exfat: fix the infinite loop in exfat_readdir() If the file system is corrupted so that a cluster is linked to itself in the cluster chain, and there is an unused directory entry in the cluster, 'dentry' will not be incremented, causing condition 'dentry < max_dentries' unable to prevent an infinite loop. This infinite loop causes s_lock not to be released, and other tasks will hang, such as exfat_sync_fs(). This commit stops traversing the cluster chain when there is unused directory entry in the cluster to avoid this infinite loop. | 5.5 |
2025-01-21 | CVE-2024-57944 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: iio: adc: ti-ads1298: Add NULL check in ads1298_init devm_kasprintf() can return a NULL pointer on failure. | 5.5 |
2025-01-21 | CVE-2025-21658 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: btrfs: avoid NULL pointer dereference if no valid extent tree [BUG] Syzbot reported a crash with the following call trace: BTRFS info (device loop0): scrub: started on devid 1 BUG: kernel NULL pointer dereference, address: 0000000000000208 #PF: supervisor read access in kernel mode #PF: error_code(0x0000) - not-present page PGD 106e70067 P4D 106e70067 PUD 107143067 PMD 0 Oops: Oops: 0000 [#1] PREEMPT SMP NOPTI CPU: 1 UID: 0 PID: 689 Comm: repro Kdump: loaded Tainted: G O 6.13.0-rc4-custom+ #206 Tainted: [O]=OOT_MODULE Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS unknown 02/02/2022 RIP: 0010:find_first_extent_item+0x26/0x1f0 [btrfs] Call Trace: <TASK> scrub_find_fill_first_stripe+0x13d/0x3b0 [btrfs] scrub_simple_mirror+0x175/0x260 [btrfs] scrub_stripe+0x5d4/0x6c0 [btrfs] scrub_chunk+0xbb/0x170 [btrfs] scrub_enumerate_chunks+0x2f4/0x5f0 [btrfs] btrfs_scrub_dev+0x240/0x600 [btrfs] btrfs_ioctl+0x1dc8/0x2fa0 [btrfs] ? do_sys_openat2+0xa5/0xf0 __x64_sys_ioctl+0x97/0xc0 do_syscall_64+0x4f/0x120 entry_SYSCALL_64_after_hwframe+0x76/0x7e </TASK> [CAUSE] The reproducer is using a corrupted image where extent tree root is corrupted, thus forcing to use "rescue=all,ro" mount option to mount the image. Then it triggered a scrub, but since scrub relies on extent tree to find where the data/metadata extents are, scrub_find_fill_first_stripe() relies on an non-empty extent root. But unfortunately scrub_find_fill_first_stripe() doesn't really expect an NULL pointer for extent root, it use extent_root to grab fs_info and triggered a NULL pointer dereference. [FIX] Add an extra check for a valid extent root at the beginning of scrub_find_fill_first_stripe(). The new error path is introduced by 42437a6386ff ("btrfs: introduce mount option rescue=ignorebadroots"), but that's pretty old, and later commit b979547513ff ("btrfs: scrub: introduce helper to find and fill sector info for a scrub_stripe") changed how we do scrub. So for kernels older than 6.6, the fix will need manual backport. | 5.5 |
2025-01-21 | CVE-2024-57933 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: gve: guard XSK operations on the existence of queues This patch predicates the enabling and disabling of XSK pools on the existence of queues. | 5.5 |
2025-01-21 | CVE-2024-57938 | Linux | Integer Overflow or Wraparound vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: net/sctp: Prevent autoclose integer overflow in sctp_association_init() While by default max_autoclose equals to INT_MAX / HZ, one may set net.sctp.max_autoclose to UINT_MAX. | 5.5 |
2025-01-21 | CVE-2024-45091 | IBM | Information Exposure Through Log Files vulnerability in IBM Urbancode Deploy IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.24, 7.1 through 7.1.2.10, and 7.2 through 7.2.3.13 stores potentially sensitive information in log files that could be read by a local user with access to HTTP request logs. | 5.5 |
2025-01-25 | CVE-2024-35112 | IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. | 5.4 | |
2025-01-25 | CVE-2025-0350 | Elegantthemes | Cross-site Scripting vulnerability in Elegantthemes Carousel Maker for Divi The Divi Carousel Maker – Image, Logo, Testimonial, Post Carousel & More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Image Carousel and Logo Carousel in all versions up to, and including, 2.0.4 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-25 | CVE-2024-13441 | Ylefebvre | Cross-site Scripting vulnerability in Ylefebvre Bilingual Linker The Bilingual Linker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the bl_otherlang_link_1 parameter in all versions up to, and including, 2.4 due to insufficient input sanitization and output escaping. | 5.4 |
2025-01-25 | CVE-2024-13458 | Notice | Cross-site Scripting vulnerability in Notice FAQ The WordPress SEO Friendly Accordion FAQ with AI assisted content generation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'noticefaq' shortcode in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-25 | CVE-2024-13548 | Wppug | Cross-site Scripting vulnerability in Wppug Power UPS for Elementor The Power Ups for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'magic-button' shortcode in all versions up to, and including, 1.2.2 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-25 | CVE-2024-13551 | Paulrosen | Cross-site Scripting vulnerability in Paulrosen ABC Notation The ABC Notation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'abcjs' shortcode in all versions up to, and including, 6.1.3 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-25 | CVE-2024-13586 | Dineshrawat | Cross-site Scripting vulnerability in Dineshrawat Masy Gallery The Masy Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'justified-gallery' shortcode in all versions up to, and including, 1.7 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-25 | CVE-2024-13599 | Thimpress | Cross-site Scripting vulnerability in Thimpress Learnpress The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 4.2.7.5 due to insufficient input sanitization and output escaping of a lesson name. | 5.4 |
2025-01-24 | CVE-2025-21262 | Microsoft | Unspecified vulnerability in Microsoft Edge Chromium User Interface (UI) Misrepresentation of Critical Information in Microsoft Edge (Chromium-based) allows an unauthorized attacker to perform spoofing over a network | 5.4 |
2025-01-24 | CVE-2024-11913 | Buddydev | Server-Side Request Forgery (SSRF) vulnerability in Buddydev Activity Plus Reloaded for Buddypress The Activity Plus Reloaded for BuddyPress plugin for WordPress is vulnerable to Blind Server-Side Request Forgery in all versions up to, and including, 1.1.1 via the 'ajax_preview_link' function. | 5.4 |
2025-01-24 | CVE-2024-13354 | Cyberchimps | Cross-site Scripting vulnerability in Cyberchimps Responsive Addons The Responsive Addons for Elementor – Free Elementor Addons Plugin and Elementor Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTML tags in several widgets in all versions up to, and including, 1.6.4 due to insufficient input sanitization and output escaping. | 5.4 |
2025-01-24 | CVE-2024-13542 | Agenceseo | Cross-site Scripting vulnerability in Agenceseo WP Google Street View The WP Google Street View (with 360° virtual tour) & Google maps + Local SEO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpgsv' shortcode in all versions up to, and including, 1.1.3 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-24 | CVE-2024-13572 | Nfusionsolutions | Cross-site Scripting vulnerability in Nfusionsolutions Precious Metals Charts and Widgets The Precious Metals Charts and Widgets for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'nfusion-widget' shortcode in all versions up to, and including, 1.2.8 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-24 | CVE-2024-12494 | Bmltenabled | Cross-site Scripting vulnerability in Bmltenabled Meeting MAP The BMLT Meeting Map plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'bmlt_meeting_map' shortcode in all versions up to, and including, 2.6.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-24 | CVE-2024-13583 | Come2Theweb | Cross-site Scripting vulnerability in Come2Theweb Simple Gallery With Filter The Simple Gallery with Filter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'c2tw_sgwf' shortcode in all versions up to, and including, 2.0 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-24 | CVE-2024-13659 | Listamester | Cross-site Scripting vulnerability in Listamester The Listamester plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'listamester' shortcode in all versions up to, and including, 2.3.4 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-23 | CVE-2024-12118 | Theeventscalendar | Cross-site Scripting vulnerability in Theeventscalendar the Events Calendar The The Events Calendar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Event Calendar Link Widget through the html_tag attribute in all versions up to, and including, 6.9.0 due to insufficient input sanitization and output escaping. | 5.4 |
2025-01-23 | CVE-2024-12504 | Videowhisper | Cross-site Scripting vulnerability in Videowhisper Broadcast Live Video The Broadcast Live Video – Live Streaming : HTML5, WebRTC, HLS, RTSP, RTMP plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_hls' shortcode in all versions up to, and including, 6.1.9 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-23 | CVE-2024-13340 | Pluginus | Cross-site Scripting vulnerability in Pluginus Meta Data and Taxonomies Filter The MDTF – Meta Data and Taxonomies Filter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'mdf_results_by_ajax' shortcode in all versions up to, and including, 1.3.3.6 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-23 | CVE-2024-13389 | Cliptakes | Cross-site Scripting vulnerability in Cliptakes The Cliptakes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'cliptakes_input_email' shortcode in all versions up to, and including, 1.3.4 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-23 | CVE-2024-12043 | Bdthemes | Cross-site Scripting vulnerability in Bdthemes Prime Slider The Prime Slider – Addons For Elementor (Revolution of a slider, Hero Slider, Post Slider and Ecommerce Slider) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'social_link_title' parameter of the 'blog' widget in all versions up to, and including, 3.16.5 due to insufficient input sanitization and output escaping. | 5.4 |
2025-01-22 | CVE-2025-0604 | A flaw was found in Keycloak. | 5.4 | |
2025-01-22 | CVE-2024-13360 | Aipower | Server-Side Request Forgery (SSRF) vulnerability in Aipower The AI Power: Complete AI Pack plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.8.96 via the wpaicg_troubleshoot_add_vector(). | 5.4 |
2025-01-22 | CVE-2024-12117 | Gambit | Cross-site Scripting vulnerability in Gambit Stackable The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter of the Button block in all versions up to, and including, 3.13.11 due to insufficient input sanitization and output escaping. | 5.4 |
2025-01-22 | CVE-2024-13584 | Videowhisper | Cross-site Scripting vulnerability in Videowhisper Picture Gallery The Picture Gallery – Frontend Image Uploads, AJAX Photo List plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'videowhisper_pictures' shortcode in all versions up to, and including, 1.5.19 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-22 | CVE-2024-13590 | Ayecode | Cross-site Scripting vulnerability in Ayecode Ketchup Shortcodes The Ketchup Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'spacer' shortcode in all versions up to, and including, 0.1.2 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-21 | CVE-2025-0371 | Crocoblock | Cross-site Scripting vulnerability in Crocoblock Jetelements The JetElements plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several widgets in all versions up to, and including, 2.7.2.1 due to insufficient input sanitization and output escaping on user supplied attributes. | 5.4 |
2025-01-25 | CVE-2024-35144 | IBM Maximo Application Suite 8.10, 8.11, and 9.0 - Monitor Component stores source code on the web server that could aid in further attacks against the system. | 5.3 | |
2025-01-25 | CVE-2024-35150 | IBM Maximo Application Suite 8.10.12, 8.11.0, 9.0.1, and 9.1.0 - Monitor Component does not neutralize output that is written to logs, which could allow an attacker to inject false log entries. | 5.3 | |
2025-01-25 | CVE-2023-38012 | IBM Cloud Pak System 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could allow a remote attacker to traverse directories on the system. | 5.3 | |
2025-01-25 | CVE-2023-38013 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information in HTTP responses that could aid in further attacks against the system. | 5.3 | |
2025-01-25 | CVE-2023-38713 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information about the system that could aid in further attacks against the system. | 5.3 | |
2025-01-25 | CVE-2023-38714 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could disclose sensitive information about the system that could aid in further attacks against the system. | 5.3 | |
2025-01-25 | CVE-2023-38716 | IBM Cloud Pak System 2.3.3.6, 2.3.36 iFix1, 2.3.3.6 iFix2, 2.3.3.7, 2.3.3.7 iFix1, and 2.3.4.0 could disclose sensitive information about the system that could aid in further attacks against the system. | 5.3 | |
2025-01-25 | CVE-2024-35114 | IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to enumerate usernames due to an observable discrepancy between login attempts. | 5.3 | |
2025-01-25 | CVE-2024-35134 | IBM Analytics Content Hub 2.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. | 5.3 | |
2025-01-24 | CVE-2025-0704 | A vulnerability, which was classified as problematic, was found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. | 5.3 | |
2025-01-24 | CVE-2024-40706 | IBM InfoSphere Information Server 11.7 could allow a remote user to obtain sensitive version information that could aid in further attacks against the system. | 5.3 | |
2025-01-24 | CVE-2025-0697 | A vulnerability, which was classified as problematic, was found in Telstra Smart Modem Gen 2 up to 20250115. | 5.3 | |
2025-01-22 | CVE-2025-20128 | A vulnerability in the Object Linking and Embedding 2 (OLE2) decryption routine of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to an integer underflow in a bounds check that allows for a heap buffer overflow read. | 5.3 | |
2025-01-22 | CVE-2024-13426 | WP Polls Project | SQL Injection vulnerability in Wp-Polls Project Wp-Polls The WP-Polls plugin for WordPress is vulnerable to SQL Injection via COOKIE in all versions up to, and including, 2.77.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 5.3 |
2025-01-21 | CVE-2024-13230 | The Social Share, Social Login and Social Comments Plugin – Super Socializer plugin for WordPress is vulnerable to Limited SQL Injection via the ‘SuperSocializerKey’ parameter in all versions up to, and including, 7.14 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. | 5.3 | |
2025-01-21 | CVE-2024-13536 | The 1003 Mortgage Application plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 1.87. | 5.3 | |
2025-01-20 | CVE-2024-22348 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. | 5.3 | |
2025-01-20 | CVE-2025-0584 | The a+HRD from aEnrich Technology has a Server-side Request Forgery, allowing unauthenticated remote attackers to exploit this vulnerability to probe internal network. | 5.3 | |
2025-01-26 | CVE-2024-13505 | AYS PRO | Cross-site Scripting vulnerability in Ays-Pro Survey Maker The Survey Maker plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘ays_sections[5][questions][8][title]’ parameter in all versions up to, and including, 5.1.3.3 due to insufficient input sanitization and output escaping. | 4.8 |
2025-01-21 | CVE-2024-57934 | Linux | NULL Pointer Dereference vulnerability in Linux Kernel In the Linux kernel, the following vulnerability has been resolved: fgraph: Add READ_ONCE() when accessing fgraph_array[] In __ftrace_return_to_handler(), a loop iterates over the fgraph_array[] elements, which are fgraph_ops. | 4.7 |
2025-01-23 | CVE-2023-32340 | IBM Sterling B2B Integrator 6.0.0.0 through 6.1.2.5 and 6.2.0.0 is vulnerable to cross-site scripting. | 4.6 | |
2025-01-20 | CVE-2024-13524 | A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic. | 4.5 | |
2025-01-22 | CVE-2024-51457 | IBM Robotic Process Automation for Cloud Pak 21.0.0 through 21.0.7.19 and 23.0.0 through 23.0.19 is vulnerable to cross-site scripting. | 4.4 | |
2025-01-25 | CVE-2023-38271 | IBM Cloud Pak System 2.3.3.0, 2.3.3.3, 2.3.3.3 iFix1, 2.3.3.4, 2.3.3.5, 2.3.3.6, 2.3.3.6 iFix1, 2.3.3.6 iFix2, 2.3.3.7, and 2.3.3.7 iFix1 could allow an authenticated user to obtain sensitive information from log files. | 4.3 | |
2025-01-25 | CVE-2024-35111 | IBM Control Center 6.2.1 and 6.3.1 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. | 4.3 | |
2025-01-25 | CVE-2024-35113 | IBM Control Center 6.2.1 and 6.3.1 could allow an authenticated user to obtain sensitive information exposed through a directory listing. | 4.3 | |
2025-01-25 | CVE-2024-13449 | Ibsofts | Missing Authorization vulnerability in Ibsofts Boom Fest The Boom Fest plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'bf_admin_action' function in all versions up to, and including, 2.2.1. | 4.3 |
2025-01-25 | CVE-2024-12113 | The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the delete_user_review() and delete_review() functions in all versions up to, and including, 1.3.2. | 4.3 | |
2025-01-25 | CVE-2024-12826 | The GoHero Store Customizer for WooCommerce plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the wooh_action_settings_save_frontend() function in all versions up to, and including, 3.5. | 4.3 | |
2025-01-25 | CVE-2024-13368 | Kainelabs | Missing Authorization vulnerability in Kainelabs Youzify The Youzify – BuddyPress Community, User Profile, Social Network & Membership Plugin for WordPress plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the youzify_offer_banner() function in all versions up to, and including, 1.3.2. | 4.3 |
2025-01-25 | CVE-2024-13709 | The Linear plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.8.1. | 4.3 | |
2025-01-24 | CVE-2025-0703 | A vulnerability, which was classified as problematic, has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d. | 4.3 | |
2025-01-24 | CVE-2025-0705 | A vulnerability has been found in JoeyBling bootplus up to 247d5f6c209be1a5cf10cd0fa18e1d8cc63cf55d and classified as problematic. | 4.3 | |
2025-01-24 | CVE-2024-10324 | Rometheme | Unspecified vulnerability in Rometheme Romethemekit for Elementor The RomethemeKit For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.5.2 via the register_controls function in widgets/offcanvas-rometheme.php. | 4.3 |
2025-01-24 | CVE-2024-13335 | Templatescoder | Missing Authorization vulnerability in Templatescoder Spexo Addons for Elementor The Spexo Addons for Elementor – Free Elementor Addons, Widgets and Templates plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the tmpcoder_theme_install_func() function in all versions up to, and including, 1.0.14. | 4.3 |
2025-01-24 | CVE-2024-13683 | Sperse | Cross-Site Request Forgery (CSRF) vulnerability in Sperse Automate HUB The Automate Hub Free by Sperse.IO plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.7.0. | 4.3 |
2025-01-23 | CVE-2024-13511 | Variation Swatches FOR Woocommerce Project | Cross-Site Request Forgery (CSRF) vulnerability in Variation Swatches for Woocommerce Project Variation Swatches for Woocommerce The Variation Swatches for WooCommerce plugin, in all versions starting at 1.0.8 up until 1.3.2, contains a vulnerability due to improper nonce verification in its settings reset functionality. | 4.3 |
2025-01-22 | CVE-2024-13447 | Thimpress | Missing Authorization vulnerability in Thimpress WP Hotel Booking The WP Hotel Booking plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the hotel_booking_load_order_user AJAX action in all versions up to, and including, 2.1.6. | 4.3 |
2025-01-22 | CVE-2024-12879 | Quantumcloud | Missing Authorization vulnerability in Quantumcloud Wpot The WPBot Pro Wordpress Chatbot plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'qc_wp_latest_update_check_pro' function in all versions up to, and including, 13.5.5. | 4.3 |
2025-01-21 | CVE-2025-24460 | Jetbrains | Incorrect Authorization vulnerability in Jetbrains Teamcity In JetBrains TeamCity before 2024.12.1 improper access control allowed to see Projects’ names in the agent pool | 4.3 |
2025-01-20 | CVE-2025-0576 | A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic. | 4.3 | |
2025-01-26 | CVE-2023-38009 | IBM Cognos Mobile Client 1.1 iOS may be vulnerable to information disclosure through man in the middle techniques due to the lack of certificate pinning. | 4.2 | |
2025-01-20 | CVE-2024-22349 | IBM DevOps Velocity 5.0.0 and IBM UrbanCode Velocity 4.0.0 through 4.0. | 4.0 |