High - CVE-2025-6150 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected by this vulnerability is an unknown functionality of the file /boafrm/formMultiAP of the component...
High - CVE-2025-6151 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in TP-Link TL-WR940N V4. Affected by this issue is some unknown functionality of the file /userRpm/WanSlaacCfgRpm.htm. The...
High - CVE-2025-3774 - The Wise Chat plugin for WordPress is...
The Wise Chat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the X-Forwarded-For header in all versions up to, and including, 3.3.4 due to insufficient input sanitization and...
Medium - CVE-2025-4775 - The WordPress Infinite Scroll – Ajax Load More...
The WordPress Infinite Scroll – Ajax Load More plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the data-button-label HTML attribute in all versions up to, and including,...
Medium - CVE-2025-5673 - The Blog2Social: Social Media Auto Post &...
The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to SQL Injection via the ‘prgSortPostType’ parameter in all versions up to, and including, 8.4.4 due to...
Medium - CVE-2025-6152 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in Steel Browser up to 0.1.3. This affects the function handleFileUpload of the file api/src/modules/files/files.routes.ts. The...