Medium - CVE-2024-13466 - The Automatically Hierarchic Categories in Menu...
The Automatically Hierarchic Categories in Menu plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'autocategorymenu' shortcode in all versions up to,...
Medium - CVE-2025-0869 - A vulnerability was found in Cianet ONU GW24AC...
A vulnerability was found in Cianet ONU GW24AC up to 20250127. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Login. The...
Medium - CVE-2025-0870 - A vulnerability was found in Axiomatic Bento4...
A vulnerability was found in Axiomatic Bento4 up to 1.6.0-641. It has been rated as critical. Affected by this issue is the function AP4_DataBuffer::GetData in the library Ap4DataBuffer.h. The...
High - CVE-2024-10591 - The MWB HubSpot for WooCommerce – CRM,...
The MWB HubSpot for WooCommerce – CRM, Abandoned Cart, Email Marketing, Marketing Automation & Analytics plugin for WordPress is vulnerable to unauthorized modification of data that can lead to...
Medium - CVE-2024-10847 - The Storely theme for WordPress is vulnerable...
The Storely theme for WordPress is vulnerable to Stored Cross-Site Scripting via a malicious display name in all versions up to, and including, 16.6 due to insufficient input sanitization and...
Medium - CVE-2024-11583 - The Borderless – Widgets, Elements, Templates...
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the...
High - CVE-2024-11600 - The Borderless – Widgets, Elements, Templates...
The Borderless – Widgets, Elements, Templates and Toolkit for Elementor & Gutenberg plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.5.9 via the...
Medium - CVE-2024-12102 - The Typer Core plugin for WordPress is...
The Typer Core plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.9.6 via the 'elementor-template' shortcode due to insufficient...
High - CVE-2024-12129 - The Royal Core plugin for WordPress is...
The Royal Core plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the...
Medium - CVE-2024-12177 - The Ai Image Alt Text Generator for WP plugin...
The Ai Image Alt Text Generator for WP plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 1.0.2 due to...