High - CVE-2025-2066 - A vulnerability has been found in projectworlds...
A vulnerability has been found in projectworlds Life Insurance Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /updateAgent.php. The...
High - CVE-2025-2067 - A vulnerability was found in projectworlds Life...
A vulnerability was found in projectworlds Life Insurance Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /search.php. The manipulation of...
NA - CVE-2025-27796 - ReadWPGImage in WPG in GraphicsMagick before...
ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds access to heap memory in ReadBlob.
Medium - CVE-2024-12809 - The Wishlist plugin for WordPress is vulnerable...
The Wishlist plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wishlist_button' shortcode in all versions up to, and including, 1.0.43 due to...
High - CVE-2024-13320 - The CURCY - WooCommerce Multi Currency -...
The CURCY - WooCommerce Multi Currency - Currency Switcher plugin for WordPress is vulnerable to SQL Injection via the 'wc_filter_price_meta[where]' parameter in all versions up to, and...
High - CVE-2024-13655 - The Flex Mag - Responsive WordPress News Theme...
The Flex Mag - Responsive WordPress News Theme theme for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to a missing capability check on the...
Critical - CVE-2025-1475 - The WPCOM Member plugin for WordPress is...
The WPCOM Member plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.7.5. This is due to insufficient verification on the 'user_phone'...
NA - CVE-2024-12576 - Software installed and run as a non-privileged...
Software installed and run as a non-privileged user may conduct improper GPU system calls to trigger a crash of the FW running on the GPU freezing graphics output.