High - CVE-2025-6381 - The BeeTeam368 Extensions plugin for WordPress...
The BeeTeam368 Extensions plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.3.4 via the handle_remove_temp_file() function. This makes it possible...
Medium - CVE-2025-6252 - The Qi Addons For Elementor plugin for...
The Qi Addons For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several parameters in all versions up to, and including, 1.9.1 due to insufficient input...
Critical - CVE-2025-5304 - The PT Project Notebooks plugin for WordPress...
The PT Project Notebooks plugin for WordPress is vulnerable to Privilege Escalation due to missing authorization in the wpnb_pto_new_users_add() function in versions 1.0.0 through 1.1.3. This makes...
High - CVE-2025-6755 - The Game Users Share Buttons plugin for...
The Game Users Share Buttons plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the ajaxDeleteTheme() function in all versions up to, and...
NA - CVE-2025-38084 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: unshare page tables during VMA split, not before Currently, __split_vma() triggers hugetlb page table unsharing...
NA - CVE-2025-38085 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: mm/hugetlb: fix huge_pmd_unshare() vs GUP-fast race huge_pmd_unshare() drops a reference on a page table that may have...
NA - CVE-2025-38086 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: net: ch9200: fix uninitialised access during mii_nway_restart In mii_nway_restart() the code attempts to call mii->mdio_read...
Medium - CVE-2025-5937 - The MicroPayments – Fans Paysite: Paid Creator...
The MicroPayments – Fans Paysite: Paid Creator Subscriptions, Digital Assets, Wallet plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.2.0....
Low - CVE-2025-6816 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in HDF5 1.14.6. This vulnerability affects the function H5O__fsinfo_encode of the file /src/H5Ofsinfo.c. The manipulation leads to heap-based...
Low - CVE-2025-6817 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in HDF5 1.14.6. This issue affects the function H5C__load_entry of the file /src/H5Centry.c. The manipulation leads to resource...