Latest CVE Feed

Following is the list of latest published vulnerabilities. You can filter the list based on the severity of the vulnerability, whether it is actively exploited (also known as CISA KEV List) or remotely exploitable. You can also sort the list based on the published date, last updated date, or CVSS score.
  • 6.1

    MEDIUM
    CVE-2015-10119

    A vulnerability, which was classified as problematic, has been found in View All Posts Page Plugin up to 0.9.0 on WordPress. This issue affects the function action_admin_notices_activation of the file view-all-posts-pages.php. The manipulation leads to cr... Read more

    Affected Products : view_all_post\'s_pages
    • EPSS Score: %0.08
    • Published: Jul. 10, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10118

    A vulnerability classified as problematic was found in cchetanonline WP-CopyProtect up to 3.0.0. This vulnerability affects the function CopyProtect_options_page of the file wp-copyprotect.php. The manipulation of the argument CopyProtect_nrc_text leads t... Read more

    Affected Products : wp-copyprotect
    • EPSS Score: %0.06
    • Published: Jun. 12, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10117

    A vulnerability, which was classified as problematic, was found in Gravity Forms DPS PxPay Plugin up to 1.4.2 on WordPress. Affected is an unknown function. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. Upgr... Read more

    Affected Products : gf_windcave_free
    • EPSS Score: %0.08
    • Published: Jun. 06, 2023
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2015-10116

    A vulnerability classified as problematic has been found in RealFaviconGenerator Favicon Plugin up to 1.2.12 on WordPress. This affects the function install_new_favicon of the file admin/class-favicon-by-realfavicongenerator-admin.php. The manipulation le... Read more

    Affected Products : favicon_by_realfavicongenerator
    • EPSS Score: %0.07
    • Published: Jun. 06, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10115

    A vulnerability, which was classified as problematic, was found in WooSidebars Sidebar Manager Converter Plugin up to 1.1.1 on WordPress. This affects the function process_request of the file classes/class-woosidebars-sbm-converter.php. The manipulation l... Read more

    • EPSS Score: %0.07
    • Published: Jun. 05, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10114

    A vulnerability, which was classified as problematic, has been found in WooSidebars Plugin up to 1.4.1 on WordPress. Affected by this issue is the function enable_custom_post_sidebars of the file classes/class-woo-sidebars.php. The manipulation of the arg... Read more

    Affected Products : woosidebars
    • EPSS Score: %0.07
    • Published: Jun. 05, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10113

    A vulnerability classified as problematic was found in WooFramework Tweaks Plugin up to 1.0.1 on WordPress. Affected by this vulnerability is the function admin_screen_logic of the file wooframework-tweaks.php. The manipulation of the argument url leads t... Read more

    Affected Products : wooframework_tweaks
    • EPSS Score: %0.06
    • Published: Jun. 05, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10112

    A vulnerability classified as problematic has been found in WooFramework Branding Plugin up to 1.0.1 on WordPress. Affected is the function admin_screen_logic of the file wooframework-branding.php. The manipulation of the argument url leads to open redire... Read more

    Affected Products : wooframework_branding
    • EPSS Score: %0.07
    • Published: Jun. 05, 2023
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2015-10111

    A vulnerability was found in Watu Quiz Plugin up to 2.6.7 on WordPress. It has been rated as critical. This issue affects the function watu_exams of the file controllers/exam.php of the component Exam Handler. The manipulation of the argument quiz leads t... Read more

    Affected Products : watu_quiz
    • EPSS Score: %0.10
    • Published: Jun. 04, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10110

    A vulnerability classified as problematic was found in ruddernation TinyChat Room Spy Plugin up to 1.2.8 on WordPress. This vulnerability affects the function wp_show_room_spy of the file room-spy.php. The manipulation of the argument room leads to cross ... Read more

    Affected Products : room_spy
    • EPSS Score: %0.08
    • Published: Jun. 02, 2023
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2015-10109

    A vulnerability was found in Video Playlist and Gallery Plugin up to 1.136 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality of the file wp-media-cincopa.php. The manipulation leads to cross-site request ... Read more

    Affected Products : video_and_media_plug-in
    • EPSS Score: %0.07
    • Published: Jun. 01, 2023
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2015-10108

    A vulnerability was found in meitar Inline Google Spreadsheet Viewer Plugin up to 0.9.6 on WordPress and classified as problematic. Affected by this issue is the function displayShortcode of the file inline-gdocs-viewer.php. The manipulation leads to cros... Read more

    Affected Products : inline_google_spreadsheet_viewer
    • EPSS Score: %0.07
    • Published: May. 31, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10107

    A vulnerability was found in Simplr Registration Form Plus+ Plugin up to 2.3.4 on WordPress and classified as problematic. This issue affects some unknown processing. The manipulation leads to cross site scripting. The attack may be initiated remotely. Up... Read more

    Affected Products : simplr_registration_form_plus\+
    • EPSS Score: %0.08
    • Published: May. 31, 2023
    • Modified: Nov. 21, 2024
  • 8.8

    HIGH
    CVE-2015-10106

    ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability classified as critical was found in mback2k mh_httpbl Extension up to 1.1.7 on TYPO3. This vulnerability affects the function moduleContent of the file mod1/index.php. The manipulation leads to sql injection... Read more

    Affected Products : mh_httpbl
    • EPSS Score: %0.05
    • Published: May. 28, 2023
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2015-10105

    A vulnerability, which was classified as critical, was found in IP Blacklist Cloud Plugin up to 3.42 on WordPress. This affects the function valid_js_identifier of the file ip_blacklist_cloud.php of the component CSV File Import. The manipulation of the a... Read more

    Affected Products : ip_blacklist_cloud
    • EPSS Score: %0.20
    • Published: May. 01, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10104

    A vulnerability, which was classified as problematic, has been found in Icons for Features Plugin 1.0.0 on WordPress. Affected by this issue is some unknown functionality of the file classes/class-icons-for-features-admin.php. The manipulation of the argu... Read more

    Affected Products : icons_for_features
    • EPSS Score: %0.08
    • Published: Apr. 30, 2023
    • Modified: Nov. 21, 2024
  • 5.5

    MEDIUM
    CVE-2015-10103

    A vulnerability, which was classified as problematic, was found in InternalError503 Forget It up to 1.3. This affects an unknown part of the file js/settings.js. The manipulation of the argument setForgetTime with the input 0 leads to infinite loop. It is... Read more

    Affected Products : forget_it
    • EPSS Score: %0.03
    • Published: Apr. 17, 2023
    • Modified: Nov. 21, 2024
  • 6.5

    MEDIUM
    CVE-2015-10102

    A vulnerability, which was classified as critical, has been found in Freshdesk Plugin 1.7 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to open redirect. The attack may be launched remotely. Upgrading to versio... Read more

    Affected Products : freshdesk
    • EPSS Score: %0.06
    • Published: Apr. 17, 2023
    • Modified: Nov. 21, 2024
  • 6.1

    MEDIUM
    CVE-2015-10101

    A vulnerability classified as problematic was found in Google Analytics Top Content Widget Plugin up to 1.5.6 on WordPress. Affected by this vulnerability is an unknown functionality of the file class-tgm-plugin-activation.php. The manipulation leads to c... Read more

    • EPSS Score: %0.12
    • Published: Apr. 15, 2023
    • Modified: Nov. 21, 2024
  • 9.8

    CRITICAL
    CVE-2015-10099

    A vulnerability classified as critical has been found in CP Appointment Calendar Plugin up to 1.1.5 on WordPress. This affects the function dex_process_ready_to_go_appointment of the file dex_appointments.php. The manipulation of the argument itemnumber l... Read more

    Affected Products : cp_appointment_calendar
    • EPSS Score: %1.27
    • Published: Apr. 10, 2023
    • Modified: Nov. 21, 2024
Showing 20 of 292517 Results