NA - CVE-2025-52689 - Successful exploitation of the vulnerability...
Successful exploitation of the vulnerability could allow an unauthenticated attacker to obtain a valid session ID with administrator privileges by spoofing the login request, potentially allowing...
NA - CVE-2025-52690 - Successful exploitation of the vulnerability...
Successful exploitation of the vulnerability could allow an attacker to execute arbitrary commands as root, potentially leading to the loss of confidentiality, integrity, availability, and full...
Medium - CVE-2025-5843 - The Brandfolder plugin for WordPress is...
The Brandfolder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all versions up to, and including, 5.0.19 due to insufficient input sanitization and...
Medium - CVE-2025-5845 - The Affiliate Reviews plugin for WordPress is...
The Affiliate Reviews plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘numColumns’ parameter in all versions up to, and including, 1.0.6 due to insufficient input...
High - CVE-2025-6043 - The Malcure Malware Scanner — #1 Toolset for...
The Malcure Malware Scanner — #1 Toolset for WordPress Malware Removal plugin for WordPress is vulnerable to Arbitrary File Deletion due to a missing capability check on the wpmr_delete_file()...
Medium - CVE-2025-6747 - The Avada (Fusion) Builder plugin for WordPress...
The Avada (Fusion) Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'fusion_map' shortcode in all versions up to, and including, 3.12.1 due...
High - CVE-2025-7359 - The Counter live visitors for WooCommerce...
The Counter live visitors for WooCommerce plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the wcvisitor_get_block function in all versions...
Critical - CVE-2025-7673 - A buffer overflow vulnerability in the URL...
A buffer overflow vulnerability in the URL parser of the zhttpd web server in Zyxel VMG8825-T50K firmware versions prior to V5.50(ABOM.5)C0 could allow an unauthenticated attacker to cause...
NA - CVE-2025-27465 - Certain instructions need intercepting and...
Certain instructions need intercepting and emulating by Xen. In some cases Xen emulates the instruction by replaying it, using an executable stub. Some instructions may raise an exception, which...