High - CVE-2024-13533 - The Small Package Quotes – USPS Edition plugin...
The Small Package Quotes – USPS Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' parameter in all versions up to, and including, 1.3.5 due to insufficient...
High - CVE-2024-13534 - The Small Package Quotes – Worldwide Express...
The Small Package Quotes – Worldwide Express Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up...
High - CVE-2025-0916 - The YaySMTP and Email Logs: Amazon SES,...
The YaySMTP and Email Logs: Amazon SES, SendGrid, Outlook, Mailgun, Brevo, Google and Any SMTP Service plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions 2.4.9 to 2.6.2...
Medium - CVE-2025-0968 - The ElementsKit Elementor addons plugin for...
The ElementsKit Elementor addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.4.0 due to a missing capability checks on the...
High - CVE-2025-1464 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in Baiyi Cloud Asset Management System up to 20250204. This issue affects some unknown processing of the file...
High - CVE-2024-52902 - IBM Cognos Controller 11.0.0 through 11.0.1 FP3...
IBM Cognos Controller 11.0.0 through 11.0.1 FP3 and IBM Controller 11.1.0 client application contains hard coded database passwords in source code which could be used for unauthorized access to the...
Medium - CVE-2024-28776 - IBM Cognos Controller 11.0.0 through 11.0.1 FP3...
IBM Cognos Controller 11.0.0 through 11.0.1 FP3 and IBM Controller 11.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI...
High - CVE-2024-28777 - IBM Cognos Controller 11.0.0 through 11.0.1 FP3...
IBM Cognos Controller 11.0.0 through 11.0.1 FP3 and IBM Controller 11.1.0 is vulnerable to unrestricted deserialization. This vulnerability allows users to execute arbitrary code, escalate...
Medium - CVE-2024-28780 - IBM Cognos Controller 11.0.0 through 11.0.1 FP3...
IBM Cognos Controller 11.0.0 through 11.0.1 FP3 and IBM Controller 11.1.0 Rich Client uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly...