NA - CVE-2025-0745 - An Improper Access Control vulnerability has...
An Improper Access Control vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to obtain the backups of the database by requesting the...
NA - CVE-2025-0746 - A Reflected Cross-Site Scripting vulnerability...
A Reflected Cross-Site Scripting vulnerability has been found in EmbedAI 2.1 and below. This vulnerability allows an authenticated attacker to craft a malicious URL leveraging...
NA - CVE-2025-0747 - A Stored Cross-Site Scripting vulnerability has...
A Stored Cross-Site Scripting vulnerability has been found in EmbedAI. This vulnerability allows an authenticated attacker to inject a malicious JavaScript code into a message that will be executed...
Medium - CVE-2024-13380 - The Alex Reservations: Smart Restaurant Booking...
The Alex Reservations: Smart Restaurant Booking plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'rr_form' shortcode in all versions up to, and...
Medium - CVE-2024-13466 - The Automatically Hierarchic Categories in Menu...
The Automatically Hierarchic Categories in Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'autocategorymenu' shortcode in all versions up to,...
Medium - CVE-2025-0869 - A vulnerability was found in Cianet ONU GW24AC...
A vulnerability was found in Cianet ONU GW24AC up to 20250127. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Login. The...
Medium - CVE-2025-0870 - A vulnerability was found in Axiomatic Bento4...
A vulnerability was found in Axiomatic Bento4 up to 1.6.0-641. It has been rated as critical. Affected by this issue is the function AP4_DataBuffer::GetData in the library Ap4DataBuffer.h. The...
High - CVE-2024-10591 - The MWB HubSpot for WooCommerce – CRM,...
The MWB HubSpot for WooCommerce – CRM, Abandoned Cart, Email Marketing, Marketing Automation & Analytics plugin for WordPress is vulnerable to unauthorized modification of data that can lead to...
Medium - CVE-2024-10847 - The Storely theme for WordPress is vulnerable...
The Storely theme for WordPress is vulnerable to Stored Cross-Site Scripting via a malicious display name in all versions up to, and including, 16.6 due to insufficient input sanitization and...
Medium - CVE-2024-11583 - The Borderless – Widgets, Elements, Templates...
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the...