Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2025-69030 | 5.4 (v3.1) | WordPress Backpack Traveler theme <= 2.10.3 - Insecure… |
Mikado-Themes |
Backpack Traveler |
2025-12-30T10:47:56.911Z | 2026-04-28T16:14:34.790Z |
| cve-2025-69024 | 6.5 (v3.1) | WordPress BizPrint plugin <= 4.6.7 - Broken Access Con… |
bizswoop |
BizPrint |
2025-12-30T10:47:55.715Z | 2026-04-28T16:14:34.654Z |
| cve-2025-69017 | 6.5 (v3.1) | WordPress RestroPress plugin <= 3.2.8.6 - Cross Site S… |
Magnigenie |
RestroPress |
2025-12-30T10:47:54.276Z | 2026-04-28T16:14:34.519Z |
| cve-2025-69027 | 5.3 (v3.1) | WordPress Product Delivery Date for WooCommerce – Lite… |
tychesoftwares |
Product Delivery Date for WooCommerce – Lite |
2025-12-30T10:47:56.343Z | 2026-04-28T16:14:34.495Z |
| cve-2025-69026 | 4.3 (v3.1) | WordPress PopupKit plugin <= 2.1.5 - Sensitive Data Ex… |
Roxnor |
PopupKit |
2025-12-30T10:47:56.141Z | 2026-04-28T16:14:34.481Z |
| cve-2025-69021 | 5.4 (v3.1) | WordPress Popup box plugin <= 6.0.7 - Cross Site Reque… |
Ays Pro |
Popup box |
2025-12-30T10:47:55.134Z | 2026-04-28T16:14:34.427Z |
| cve-2025-69015 | 3.8 (v3.1) | WordPress Crowdsignal Forms plugin <= 1.7.2 - Broken A… |
Automattic |
Crowdsignal Forms |
2025-12-30T10:47:53.892Z | 2026-04-28T16:14:34.426Z |
| cve-2025-69022 | 5.4 (v3.1) | WordPress HR Management Lite plugin <= 3.6 - Broken Ac… |
Weblizar - WordPress Themes & Plugin |
HR Management Lite |
2025-12-30T10:47:55.337Z | 2026-04-28T16:14:34.406Z |
| cve-2025-69013 | 4.3 (v3.1) | WordPress Stratum plugin <= 1.6.1 - Broken Access Cont… |
jetmonsters |
Stratum |
2025-12-30T10:47:53.465Z | 2026-04-28T16:14:34.274Z |
| cve-2025-69014 | 4.9 (v3.1) | WordPress Youzify plugin <= 1.3.7 - Server Side Reques… |
Youzify |
Youzify |
2025-12-30T10:47:53.707Z | 2026-04-28T16:14:34.221Z |
| cve-2025-69012 | 4.3 (v3.1) | WordPress Event Organiser plugin <= 3.12.8 - Broken Ac… |
Stephen Harris |
Event Organiser |
2025-12-30T10:47:53.274Z | 2026-04-28T16:14:34.195Z |
| cve-2025-69009 | 5.3 (v3.1) | WordPress Medicalequipment theme <= 1.0.9 - Broken Acc… |
kamleshyadav |
Medicalequipment |
2025-12-30T10:47:52.874Z | 2026-04-28T16:14:34.032Z |
| cve-2025-68999 | 8.5 (v3.1) | WordPress Happy Addons for Elementor plugin <= 3.20.4 … |
HappyMonster |
Happy Addons for Elementor |
2026-01-22T16:52:15.685Z | 2026-04-28T16:14:33.851Z |
| cve-2025-68998 | 5.4 (v3.1) | WordPress Heateor Social Login plugin <= 1.1.39 - Cros… |
Heateor Support |
Heateor Social Login |
2025-12-30T10:47:52.118Z | 2026-04-28T16:14:33.847Z |
| cve-2025-68996 | 7.5 (v3.1) | WordPress Responsive Posts Carousel Pro plugin <= 15.1… |
WebCodingPlace |
Responsive Posts Carousel Pro |
2025-12-30T10:47:51.680Z | 2026-04-28T16:14:33.815Z |
| cve-2025-68995 | 4.3 (v3.1) | WordPress My Sticky Elements plugin <= 2.3.3 - Broken … |
Premio |
My Sticky Elements |
2025-12-30T10:47:51.492Z | 2026-04-28T16:14:33.810Z |
| cve-2025-68988 | 5.3 (v3.1) | WordPress E-Invoice App Malaysia plugin <= 1.3.0 - Sen… |
o2oe |
E-Invoice App Malaysia |
2025-12-30T10:47:50.131Z | 2026-04-28T16:14:33.801Z |
| cve-2025-68989 | 4.3 (v3.1) | WordPress Contact Form 7 Extension For Mailchimp plugi… |
Renzo Johnson |
contact-form-7-mailchimp-extension |
2025-12-30T10:47:50.363Z | 2026-04-28T16:14:33.789Z |
| cve-2025-68991 | 6.5 (v3.1) | WordPress BWL Pro Voting Manager plugin <= 1.4.9 - Cro… |
xenioushk |
BWL Pro Voting Manager |
2025-12-30T10:47:50.729Z | 2026-04-28T16:14:33.772Z |
| cve-2025-68990 | 8.5 (v3.1) | WordPress BWL Pro Voting Manager plugin <= 1.4.9 - SQL… |
xenioushk |
BWL Pro Voting Manager |
2025-12-30T10:47:50.548Z | 2026-04-28T16:14:33.768Z |
| cve-2025-68987 | 7.5 (v3.1) | WordPress Cinerama theme <= 2.9 - Local File Inclusion… |
Edge-Themes |
Cinerama |
2025-12-30T10:47:49.947Z | 2026-04-28T16:14:33.768Z |
| cve-2025-68993 | 5.3 (v3.1) | WordPress Share, Print and PDF Products for WooCommerc… |
XforWooCommerce |
Share, Print and PDF Products for WooCommerce |
2025-12-30T10:47:51.107Z | 2026-04-28T16:14:33.764Z |
| cve-2025-68994 | 5.3 (v3.1) | WordPress Product Loops for WooCommerce plugin <= 2.1.… |
XforWooCommerce |
Product Loops for WooCommerce |
2025-12-30T10:47:51.296Z | 2026-04-28T16:14:33.761Z |
| cve-2025-68985 | 7.5 (v3.1) | WordPress Aora theme <= 1.3.15 - Local File Inclusion … |
thembay |
Aora |
2025-12-30T10:47:49.767Z | 2026-04-28T16:14:33.567Z |
| cve-2025-68978 | 6.5 (v3.1) | WordPress DesignThemes Core plugin <= 1.6 - Cross Site… |
designthemes |
DesignThemes Core |
2025-12-30T10:47:48.485Z | 2026-04-28T16:14:33.548Z |
| cve-2025-68984 | 7.5 (v3.1) | WordPress Puca theme <= 2.6.39 - Local File Inclusion … |
thembay |
Puca |
2025-12-30T10:47:49.577Z | 2026-04-28T16:14:33.544Z |
| cve-2025-68979 | 5.3 (v3.1) | WordPress Google Calendar Events plugin <= 3.5.9 - Ins… |
SimpleCalendar |
Google Calendar Events |
2025-12-30T10:47:48.678Z | 2026-04-28T16:14:33.469Z |
| cve-2025-68980 | 5.3 (v3.1) | WordPress WeDesignTech Portfolio plugin <= 1.0.2 - Bro… |
designthemes |
WeDesignTech Portfolio |
2025-12-30T10:47:48.858Z | 2026-04-28T16:14:33.458Z |
| cve-2025-68974 | 6.6 (v3.1) | WordPress WordPress Social Login and Register plugin <… |
miniOrange |
WordPress Social Login and Register |
2025-12-30T10:47:47.632Z | 2026-04-28T16:14:33.450Z |
| cve-2025-68912 | 8.6 (v3.1) | WordPress HDForms plugin <= 1.6.1 - Arbitrary File Del… |
Harmonic Design |
HDForms |
2026-01-22T16:52:15.047Z | 2026-04-28T16:14:33.446Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2008-001895 | JP1/VERITAS NetBackup JAVA Administration GUI Privilege Escalation Vulnerability | 2008-12-01T11:10+09:00 | 2008-12-01T11:10+09:00 |
| jvndb-2008-000074 | Snoopy command injection vulnerability | 2008-10-28T15:34+09:00 | 2008-11-28T13:54+09:00 |
| jvndb-2008-001312 | Symantec Backup Exec for Windows Server ActiveX Control Multiple Vulnerabilities | 2008-05-21T00:00+09:00 | 2008-11-21T12:20+09:00 |
| jvndb-2008-001311 | Symantec Backup Exec for Windows Server ActiveX Control Multiple Buffer Overflow Vulnerabilities | 2008-05-21T00:00+09:00 | 2008-11-21T12:20+09:00 |
| jvndb-2008-001043 | X.Org Foundation X server buffer overflow vulnerability | 2008-06-13T17:11+09:00 | 2008-11-21T12:19+09:00 |
| jvndb-2008-001877 | JP1/Integrated Management Service Support Cross-Site Scripting Vulnerability | 2008-11-21T10:16+09:00 | 2008-11-21T10:16+09:00 |
| jvndb-2008-000077 | GungHo LoadPrgAx vulnerable to arbitrary Java program execution | 2008-11-19T15:50+09:00 | 2008-11-19T15:50+09:00 |
| jvndb-2006-000808 | Denial of service vulnerability in Ruby CGI library (cgi.rb) | 2008-05-21T00:00+09:00 | 2008-11-14T12:20+09:00 |
| jvndb-2008-000076 | sISAPILocation vulnerability bypasses HTTP header rewrite function | 2008-11-10T13:29+09:00 | 2008-11-10T13:29+09:00 |
| jvndb-2008-001779 | CA ARCserver Backup and CA ARCserve Backup Client Agent Denial of Service (DoS) Vulnerability | 2008-10-30T12:20+09:00 | 2008-10-30T12:20+09:00 |
| jvndb-2008-001778 | BrightStor ARCserve and eTrust Antivirus Arbitrary Code Execution Vulnerability | 2008-10-30T12:19+09:00 | 2008-10-30T12:19+09:00 |
| jvndb-2008-000071 | MyNETS cross-site scripting vulnerability | 2008-10-22T17:49+09:00 | 2008-10-22T17:49+09:00 |
| jvndb-2008-000070 | Internet Explorer vulnerable in handling CDO protocol | 2008-10-22T17:49+09:00 | 2008-10-22T17:49+09:00 |
| jvndb-2008-000068 | hisa_cart information disclosure vulnerability | 2008-10-21T19:25+09:00 | 2008-10-21T19:25+09:00 |
| jvndb-2008-000073 | Blosxom vulnerable to cross-site scripting | 2008-10-20T17:30+09:00 | 2008-10-20T17:30+09:00 |
| jvndb-2008-000016 | Sun Java Runtime Environment (JRE) contains a vulnerability in processing XSLT transformations | 2008-05-21T00:00+09:00 | 2008-10-09T13:35+09:00 |
| jvndb-2008-000066 | Nucleus EUC-JP Japanese Edition vulnerable to cross-site scripting | 2008-10-06T15:24+09:00 | 2008-10-06T15:24+09:00 |
| jvndb-2008-000063 | EC-CUBE cross-site scripting vulnerability | 2008-10-01T16:32+09:00 | 2008-10-01T16:32+09:00 |
| jvndb-2008-000062 | EC-CUBE cross-site scripting vulnerability | 2008-10-01T16:32+09:00 | 2008-10-01T16:32+09:00 |
| jvndb-2008-000065 | EC-CUBE vulnerable to SQL injection | 2008-10-01T16:31+09:00 | 2008-10-01T16:31+09:00 |
| jvndb-2008-000064 | EC-CUBE cross-site scripting vulnerability | 2008-10-01T16:31+09:00 | 2008-10-01T16:31+09:00 |
| jvndb-2008-000061 | phpMyAdmin cross-site scripting vulnerability | 2008-09-26T16:37+09:00 | 2008-09-26T16:37+09:00 |
| jvndb-2008-001665 | Data Transfer Control Process Cessation Issue in XFIT/S/JCA and XFIT/S/ZGN | 2008-09-24T12:03+09:00 | 2008-09-24T12:03+09:00 |
| jvndb-2008-000060 | Kantan WEB Server cross-site scripting vulnerability | 2008-09-22T12:26+09:00 | 2008-09-22T12:26+09:00 |
| jvndb-2008-000059 | Kantan WEB Server directory traversal vulnerability | 2008-09-22T12:26+09:00 | 2008-09-22T12:26+09:00 |
| jvndb-2008-000058 | Multiple Tor World CGI scripts vulnerable to arbitrary script execution | 2008-09-18T11:48+09:00 | 2008-09-18T11:48+09:00 |
| jvndb-2008-000057 | Sound Master 2nd from High Norm vulnerable to cross-site scripting | 2008-09-10T11:28+09:00 | 2008-09-10T11:28+09:00 |
| jvndb-2008-000056 | Movable Type vulnerable to cross-site scripting | 2008-09-10T11:28+09:00 | 2008-09-10T11:28+09:00 |
| jvndb-2008-001614 | JP1/NETM/DM SubManager and JP1/NETM/DM Client Process Termination Vulnerability | 2008-09-09T16:21+09:00 | 2008-09-09T16:21+09:00 |
| jvndb-2008-001613 | Fujitsu Interstage Application Server Access Control Update Problem | 2008-09-09T16:21+09:00 | 2008-09-09T16:21+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2023-avi-0978 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2023-11-24T00:00:00.000000 | 2023-11-24T00:00:00.000000 |
| certfr-2023-avi-0977 | Multiples vulnérabilités dans le noyau Linux de Ubuntu | 2023-11-24T00:00:00.000000 | 2023-11-24T00:00:00.000000 |
| certfr-2023-avi-0976 | Multiples vulnérabilités dans les produits IBM | 2023-11-23T00:00:00.000000 | 2023-11-23T00:00:00.000000 |
| certfr-2023-avi-0975 | Multiples vulnérabilités dans Ivanti Secure Access (Pulse Desktop) | 2023-11-23T00:00:00.000000 | 2023-11-23T00:00:00.000000 |
| certfr-2023-avi-0974 | Multiples vulnérabilités dans les produits Synology | 2023-11-23T00:00:00.000000 | 2023-11-23T00:00:00.000000 |
| certfr-2023-avi-0973 | Multiples vulnérabilités dans les produits Fortinet | 2023-11-22T00:00:00.000000 | 2023-11-22T00:00:00.000000 |
| certfr-2023-avi-0972 | Multiples vulnérabilités dans les produits Foxit | 2023-11-22T00:00:00.000000 | 2023-11-22T00:00:00.000000 |
| certfr-2023-avi-0971 | Vulnérabilité dans ElasticSearch | 2023-11-22T00:00:00.000000 | 2023-11-22T00:00:00.000000 |
| certfr-2023-avi-0970 | Multiples vulnérabilités dans les produits OwnCloud | 2023-11-22T00:00:00.000000 | 2023-11-22T00:00:00.000000 |
| certfr-2023-avi-0969 | Multiples vulnérabilités dans les produits Mozilla | 2023-11-22T00:00:00.000000 | 2023-11-22T00:00:00.000000 |
| certfr-2023-avi-0968 | Multiples vulnérabilités dans les produits Nextcloud | 2023-11-21T00:00:00.000000 | 2023-11-21T00:00:00.000000 |
| certfr-2023-avi-0967 | Vulnérabilité dans les produits StrongSwan | 2023-11-21T00:00:00.000000 | 2023-11-21T00:00:00.000000 |
| certfr-2023-avi-0966 | Multiples vulnérabilités dans Tenable Security Center | 2023-11-21T00:00:00.000000 | 2023-11-21T00:00:00.000000 |
| certfr-2023-avi-0965 | Vulnérabilité dans Microsoft Powershell | 2023-11-21T00:00:00.000000 | 2023-11-21T00:00:00.000000 |
| certfr-2023-avi-0807 | Vulnérabilité dans Microsoft Edge | 2023-10-05T00:00:00.000000 | 2023-11-21T00:00:00.000000 |
| certfr-2023-avi-0964 | Vulnérabilité dans CheckPoint Endpoint Security | 2023-11-20T00:00:00.000000 | 2023-11-20T00:00:00.000000 |
| certfr-2023-avi-0963 | Vulnérabilité dans les produits Cisco | 2023-11-20T00:00:00.000000 | 2023-11-20T00:00:00.000000 |
| certfr-2023-avi-0962 | Vulnérabilité dans les produits Synology | 2023-11-20T00:00:00.000000 | 2023-11-20T00:00:00.000000 |
| certfr-2023-avi-0961 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0960 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0959 | Multiples vulnérabilités dans Microsoft Edge | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0958 | Multiples vulnérabilités dans IBM | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0957 | Multiples vulnérabilités dans le noyau Linux de RedHat | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0956 | Multiples vulnérabilités dans les produits Splunk | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0955 | Vulnérabilité dans les produits Cisco | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0954 | Multiples vulnérabilités dans Nessus et Nessus Agent | 2023-11-17T00:00:00.000000 | 2023-11-17T00:00:00.000000 |
| certfr-2023-avi-0953 | Multiples vulnérabilités dans les produits Intel | 2023-11-16T00:00:00.000000 | 2023-11-16T00:00:00.000000 |
| certfr-2023-avi-0952 | Vulnérabilité dans Progress WS_FTP Server | 2023-11-16T00:00:00.000000 | 2023-11-16T00:00:00.000000 |
| certfr-2023-avi-0951 | Multiples vulnérabilités dans Android et Pixel | 2023-11-16T00:00:00.000000 | 2023-11-16T00:00:00.000000 |
| certfr-2023-avi-0950 | Multiples vulnérabilités dans Juniper Secure Analytics | 2023-11-16T00:00:00.000000 | 2023-11-16T00:00:00.000000 |