Critical - CVE-2025-0316 - The WP Directorybox Manager plugin for...
The WP Directorybox Manager plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 2.5. This is due to incorrect authentication in the...
Medium - CVE-2024-54176 - IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1...
IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 and IBM UrbanCode Deploy (UCD) 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14 and 7.3 through 7.3.2 could allow an...
Medium - CVE-2025-0169 - The DWT - Directory & Listing WordPress Theme...
The DWT - Directory & Listing WordPress Theme is vulnerable to Stored Cross-Site Scripting via shortcodes in versions up to, and including, 3.3.4 due to insufficient input sanitization and output...
NA - CVE-2025-0674 - Multiple Elber products are affected by an...
Multiple Elber products are affected by an authentication bypass vulnerability which allows unauthorized access to the password management functionality. Attackers can exploit this issue by...
Medium - CVE-2025-1084 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in Mindskip xzs-mysql ????????? 3.9.0. Affected by this issue is some unknown functionality. The manipulation leads to...
Medium - CVE-2025-1085 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, was found in Animati PACS up to 1.24.12.09.03. This affects an unknown part of the file /login. The manipulation of the argument p leads to...
Critical - CVE-2025-1061 - The Nextend Social Login Pro plugin for...
The Nextend Social Login Pro plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.1.16. This is due to insufficient verification on the user being...