High - CVE-2025-7436 - A vulnerability was found in Campcodes Online...
A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file...
Critical - CVE-2025-7401 - The Premium Age Verification / Restriction for...
The Premium Age Verification / Restriction for WordPress plugin for WordPress is vulnerable to arbitrary file read and write due to the existence of an insufficiently protected remote support...
NA - CVE-2025-6200 - The GeoDirectory WordPress plugin before...
The GeoDirectory WordPress plugin before 2.8.120 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could...
NA - CVE-2025-30023 - The communication protocol used between client...
The communication protocol used between client and server had a flaw that could lead to an authenticated user performing a remote code execution attack.
NA - CVE-2025-2942 - The Order Delivery Date WordPress plugin before...
The Order Delivery Date WordPress plugin before 12.6.0 discloses arbitrary post title (such as from draft and private posts) via an unauthenticated AJAX action, allowing attackers to retrieve such...
NA - CVE-2025-5028 - Installation file of ESET security products on...
Installation file of ESET security products on Windows allow an attacker to misuse to delete an arbitrary file without having the permissions to do so.
Critical - CVE-2025-5392 - The GB Forms DB plugin for WordPress is...
The GB Forms DB plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 1.0.2 via the gbfdb_talk_to_front() function. This is due to the function accepting...