Medium - CVE-2025-2744 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in zhijiantianya ruoyi-vue-pro 2.4.1. Affected is an unknown function of the file /admin-api/mp/material/upload-news-image of the...
Medium - CVE-2025-2750 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in Open Asset Import Library Assimp 5.4.3. This affects the function Assimp::CSMImporter::InternReadFile of the file...
Medium - CVE-2025-2751 - A vulnerability has been found in Open Asset...
A vulnerability has been found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This vulnerability affects the function Assimp::CSMImporter::InternReadFile of the file...
Medium - CVE-2025-2752 - A vulnerability was found in Open Asset Import...
A vulnerability was found in Open Asset Import Library Assimp 5.4.3 and classified as problematic. This issue affects the function fast_atoreal_move in the library include/assimp/fast_atof.h of the...
High - CVE-2024-13690 - The WP Church Donation plugin for WordPress is...
The WP Church Donation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via several donation form submission parameters in all versions up to, and including, 1.7 due to...
Medium - CVE-2024-13710 - The Estatebud – Properties & Listings plugin...
The Estatebud – Properties & Listings plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 5.5.0. This is due to missing or incorrect nonce...
Medium - CVE-2024-13731 - The Alert Box Block – Display notice/alerts in...
The Alert Box Block – Display notice/alerts in the front end. plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Alert Box block in all versions up to, and...
High - CVE-2025-2319 - The EZ SQL Reports Shortcode Widget and DB...
The EZ SQL Reports Shortcode Widget and DB Backup plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions 4.11.13 to 5.25.08. This is due to missing or incorrect nonce...
Medium - CVE-2025-2510 - The Frndzk Expandable Bottom Bar plugin for...
The Frndzk Expandable Bottom Bar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'text' parameter in all versions up to, and including, 1.0 due to insufficient input...
Medium - CVE-2025-2559 - A flaw was found in Keycloak. When the...
A flaw was found in Keycloak. When the configuration uses JWT tokens for authentication, the tokens are cached until expiration. If a client uses JWT tokens with an excessively long expiration...