High - CVE-2015-10133 - The Subscribe to Comments for WordPress is...
The Subscribe to Comments for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 2.1.2 via the Path to header value. This allows authenticated attackers, with...
High - CVE-2015-10134 - The Simple Backup plugin for WordPress is...
The Simple Backup plugin for WordPress is vulnerable to Arbitrary File Download in versions up to, and including, 2.7.10. via the download_backup_file function. This is due to a lack of capability...
Critical - CVE-2015-10135 - The WPshop 2 – E-Commerce plugin for WordPress...
The WPshop 2 – E-Commerce plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the ajaxUpload function in versions before 1.3.9.6. This makes it...
High - CVE-2015-10136 - The GI-Media Library plugin for WordPress is...
The GI-Media Library plugin for WordPress is vulnerable to Directory Traversal in versions before 3.0 via the 'fileid' parameter. This allows unauthenticated attackers to read the...
Critical - CVE-2016-15043 - The WP Mobile Detector plugin for WordPress is...
The WP Mobile Detector plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in resize.php file in versions up to, and including, 3.5. This makes it...
Low - CVE-2025-7815 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in PHPGurukul Apartment Visitors Management System 1.0. This issue affects some unknown processing of the file...
Low - CVE-2025-7816 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, was found in PHPGurukul Apartment Visitors Management System 1.0. Affected is an unknown function of the file /visitor-detail.php of the...
Critical - CVE-2015-10138 - The Work The Flow File Upload plugin for...
The Work The Flow File Upload plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the jQuery-File-Upload-9.5.0 server and test files in versions up...
High - CVE-2015-10139 - The WPLMS theme for WordPress is vulnerable to...
The WPLMS theme for WordPress is vulnerable to Privilege Escalation in versions 1.5.2 to 1.8.4.1 via the 'wp_ajax_import_data' AJAX action. This makes it possible for authenticated...
NA - CVE-2025-38351 - In the Linux kernel, the following...
In the Linux kernel, the following vulnerability has been resolved: KVM: x86/hyper-v: Skip non-canonical addresses during PV TLB flush In KVM guests with Hyper-V hypercalls enabled, the...