High - CVE-2024-12920 - The FoodBakery | Delivery Restaurant Directory...
The FoodBakery | Delivery Restaurant Directory WordPress Theme theme for WordPress is vulnerable to unauthorized access of data and modification of data due to a missing capability check on the...
Critical - CVE-2024-13442 - The Service Finder Bookings plugin for...
The Service Finder Bookings plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 5.0. This is due to the plugin not properly...
High - CVE-2024-13933 - The FoodBakery | Delivery Restaurant Directory...
The FoodBakery | Delivery Restaurant Directory WordPress Theme theme for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 4.7. This is due to missing or...
Medium - CVE-2024-45644 - IBM Security ReaQta 3.12 allows a privileged...
IBM Security ReaQta 3.12 allows a privileged user to upload or transfer files of dangerous types that can be automatically processed within the product's environment.
Medium - CVE-2025-2511 - The AHAthat Plugin plugin for WordPress is...
The AHAthat Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the 'id' parameter in all versions up to, and including, 1.6 due to insufficient escaping on the user...
Critical - CVE-2025-2512 - The File Away plugin for WordPress is...
The File Away plugin for WordPress is vulnerable to arbitrary file uploads due to a missing capability check and missing file type validation in the upload() function in all versions up to, and...
NA - CVE-2024-55551 - An issue was discovered in Exasol jdbc driver...
An issue was discovered in Exasol jdbc driver 24.2.0. Attackers can inject malicious parameters into the JDBC URL, triggering JNDI injection during the process when the JDBC Driver uses this URL to...
NA - CVE-2024-42176 - HCL MyXalytics is affected by concurrent login...
HCL MyXalytics is affected by concurrent login vulnerability. A concurrent login vulnerability occurs when simultaneous active sessions are allowed for a single credential allowing an attacker to...