Latest CVE Feed
-
5.3
CVSS31CVE-2025-32257
Exposure of Sensitive System Information Due to Uncleared Debug Information vulnerability in 1clickmigration 1 Click WordPress Migration allows Retrieve Embedded Sensitive Data. This issue affects 1 Click WordPress Migration: from n/a through 2.2.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.3
CVSS31CVE-2025-32256
Missing Authorization vulnerability in devsoftbaltic SurveyJS allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects SurveyJS: from n/a through 1.12.20.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.3
CVSS31CVE-2025-32255
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in ERA404 StaffList allows Retrieve Embedded Sensitive Data. This issue affects StaffList: from n/a through 3.2.6.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.3
CVSS31CVE-2025-32254
Missing Authorization vulnerability in Iqonic Design WPBookit allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects WPBookit: from n/a through 1.0.1.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.3
CVSS31CVE-2025-32253
Missing Authorization vulnerability in ComMotion Course Booking System allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Course Booking System: from n/a through 6.0.5.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.3
CVSS31CVE-2025-32252
Missing Authorization vulnerability in blackandwhitedigital WP Genealogy – Your Family History Website allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WP Genealogy – Your Family History Website: from n/a through... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.3
CVSS31CVE-2025-32251
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in J. Tyler Wiest Jetpack Feedback Exporter allows Retrieve Embedded Sensitive Data. This issue affects Jetpack Feedback Exporter: from n/a through 1.23.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.4
CVSS31CVE-2025-32250
Cross-Site Request Forgery (CSRF) vulnerability in rollbar Rollbar allows Cross Site Request Forgery. This issue affects Rollbar: from n/a through 2.7.1.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.4
CVSS31CVE-2025-32249
Cross-Site Request Forgery (CSRF) vulnerability in designinvento DirectoryPress allows Cross Site Request Forgery. This issue affects DirectoryPress: from n/a through 3.6.19.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.4
CVSS31CVE-2025-32248
Cross-Site Request Forgery (CSRF) vulnerability in SwiftXR SwiftXR (3D/AR/VR) Viewer allows Cross Site Request Forgery. This issue affects SwiftXR (3D/AR/VR) Viewer: from n/a through 1.0.7.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.4
CVSS31CVE-2025-32247
Cross-Site Request Forgery (CSRF) vulnerability in ABCdatos AI Content Creator allows Cross Site Request Forgery. This issue affects AI Content Creator: from n/a through 1.2.6.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
5.4
CVSS31CVE-2025-32246
Missing Authorization vulnerability in Tim Nguyen 1-Click Backup & Restore Database allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects 1-Click Backup & Restore Database: from n/a through 1.0.3.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
6.5
CVSS31CVE-2025-32241
Cross-Site Request Forgery (CSRF) vulnerability in CleverReach® Official CleverReach Plugin for WooCommerce allows Cross Site Request Forgery. This issue affects Official CleverReach Plugin for WooCommerce: from n/a through 3.4.3.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32239
Missing Authorization vulnerability in Joao Romao Social Share Buttons & Analytics Plugin – GetSocial.io allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Social Share Buttons & Analytics Plugin – GetSocial.io: fr... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32238
Generation of Error Message Containing Sensitive Information vulnerability in vcita Online Booking & Scheduling Calendar for WordPress by vcita allows Retrieve Embedded Sensitive Data. This issue affects Online Booking & Scheduling Calendar for WordPress ... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32237
Missing Authorization vulnerability in Stylemix MasterStudy LMS allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects MasterStudy LMS: from n/a through 3.5.23.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32235
Missing Authorization vulnerability in sonaar MP3 Audio Player for Music, Radio & Podcast by Sonaar allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects MP3 Audio Player for Music, Radio & Podcast by Sonaar: from n/a... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32234
Missing Authorization vulnerability in aleswebs AdMail – Multilingual Back in-Stock Notifier for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects AdMail – Multilingual Back in-Stock Notifier for WooCo... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32233
Missing Authorization vulnerability in WP Chill Revive.so – Bulk Rewrite and Republish Blog Posts allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Revive.so – Bulk Rewrite and Republish Blog Posts: from n/a throu... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025
-
4.3
CVSS31CVE-2025-32232
Missing Authorization vulnerability in ERA404 StaffList allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects StaffList: from n/a through 3.2.6.... Read more
Affected Products :- Published: Apr. 04, 2025
- Modified: Apr. 04, 2025