Vendors

microsoft
9756
google
6222
apple
3822
debian
3770
linux
2887
cisco
2669
oracle
2592
ibm
2531
fedoraproject
2363
red hat
2223
redhat
1894
adobe
1565
canonical
1492
siemens
1353
qualcomm
1292
foxit
1225
opensuse
1149
mozilla
1090
huawei
973
intel
801
apache
791
netapp
785
hp
708
netgear
673
sap
628
foxitsoftware
618
d-link
609
f5
594
dell
534
joomla
507
jenkins
490
bentley
475
sun
447
irfanview
434
samsung
433
trend micro
429
gnu
428
pdf-xchange
412
juniper
407
vmware
403
nvidia
365
schneider-electric
365
suse
360
fortinet
355
dlink
332
gitlab
288
tenda
284
php
258
trendmicro
257
advantech
252
autodesk
242
mcafee
234
imagemagick
226
wireshark
224
freebsd
210
kofax
207
broadcom
197
typo3
197
arubanetworks
193
tp-link
191
lenovo
182
symantec
180
parallels
170
novell
167
solarwinds
160
citrix
159
zohocorp
154
xen
151
xnview
151
ivanti
150
vim
144
moxa
143
totolink
143
rockwellautomation
142
wordpress
141
ashlar-vellum
138
ffmpeg
138
deltaww
135
gpac
131
qnap
131
opentext
129
qemu
129
jetbrains
126
amd
125
delta industrial automation
121
asus
116
linuxfoundation
116
drupal
115
artifex
112
isc
112
oretnom23
112
zyxel
112
synology
111
mediatek
110
gnome
109
emc
107
openbsd
105
tibco
101
python
100
trimble
99
unisoc
98
fatek automation
96
atlassian
95
golang
95
sgi
95
zoom
95
nodejs
94
splunk
92
microfocus
90
cpanel
89
hpe
88
omron
88
paloaltonetworks
85
mattermost
84
acronis
83
delta electronics
83
progress
83
tonybybell
82
fuji electric
81
libtiff
81
x.org
81
fujielectric
79
mariadb
79
mitsubishielectric
79
reolink
79
centreon
77
mambo
77
eclipse
75
sonicwall
75
hashicorp
74
openssl
74
hitachi
73
kde
73
samba
73
lg
72
codesys
71
magento
71
moodle
71
hcltech
70
wecon
70
insyde
69
webkitgtk
69
rockwell automation
68
milesight
67
pivotal software
67
stdutility
67
mediawiki
66
phoenixcontact
66
radare
66
phpgurukul
65
postgresql
65
h3c
64
schneider electric
64
amazon
63
tenable
63
tungsten automation
63
inductive automation
62
nextcloud
62
abb
61
open-emr
61
ansys
60
checkpoint
60
cloudfoundry
60
tendacn
60
mandrakesoft
59
arm
58
tracker-software
58
djangoproject
57
zte
56
gentoo
55
bitdefender
54
draytek
54
haxx
54
sophos
54
netbsd
53
pimcore
53
avaya
52
elastic
52
glpi-project
52
quest
52
sco
52
avast
51
envoyproxy
51
esri
51
graphicsmagick
51
f-secure
50
gstreamer project
50
phpmyadmin
50
trendnet
50
xoops
50
xwiki
50
zephyrproject
50
bosch
49
cacti
49
videolan
49
axiosys
48
facebook
48
luxion
48
nokia
48
openstack
48
phpmyfaq
48
pulsesecure
48
opendesign
47
ge
46
philips
46
xmlsoft
46
docker
45
ruby-lang
45
squid-cache
45
zzcms
45
nec
44
sante
44
gstreamer
43
hitachienergy
43
honeywell
43
mit
43
nagios
43
opennetworking
43
ajaysharma
42
freedesktop
42
mybb
42
realtek
42
swftools
42
francisco burzi
41
jasper project
41
usememos
41
aveva
40
ca
40
digium
40
caldera
39
rubyonrails
39
sugarcrm
39
arista
38
linksys
37
mi
37
microweber
37
ntp
37
open design alliance (oda)
37
allegra
36
cmsmadesimple
36
github
36
iobit
36
librenms
36
ui
36
clamav
35
jerryscript
35
softing
35
chshcms
34
grafana
34
sqlite
34
wago
34
centos web panel
33
cybozu
33
k7computing
33
linecorp
33
motorola
33
bea
32
cesanta
32
exim
32
kubernetes
32
panasonic
32
corel
31
horner automation
31
ipswitch
31
os4ed
31
plone
31
tcpdump
31
dedecms
30
discourse
30
veritas
30
wavlink
30
axis
29
blender
29
canon
29
combodo
29
emerson
29
foscam
29
lexmark
29
open-xchange
29
openatom
29
openlinksw
29
vipre
29
cloudflare
28
couchbase
28
dolibarr
28
ethereal group
28
johnsoncontrols
28
libsdl
28
logsign
28
salesagility
28
tiki
28
uclouvain
28
xerox
28
checkmk
27
comodo
27
faststone
27
hornerautomation
27
powerdns
27
jflyfox
26
libming
26

maven/io.jenkins.plugins:atlassian-bitbucket-server-integrationCSRF

8.8
First published (updated )

Jenkins Bitbucket Server Integration PluginCSRF

8.8
EPSS
0.04%
Trending
Week
First published (updated )

Cisco BroadWorksCisco BroadWorks SIP Denial of Service Vulnerability

First published (updated )

CVE-2025-0638Routinator crashes when illegal characters are present in manifest file names

7.5
First published (updated )

Blue Wrench Video WidgetWordPress Blue Wrench Video Widget Plugin <= 2.1.0 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2025-23882WordPress WP Download Codes Plugin <= 2.5.4 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Kolja Nolte Flexible BlogtitleWordPress Flexible Blogtitle Plugin <= 0.1 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Contact Form 7 Round Robin Lead DistributionWordPress Contact Form 7 Round Robin Lead Distribution Plugin <= 1.2.1 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

NotFound InFundingWordPress InFunding plugin <= 1.0 - Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

CVE-2025-23746WordPress CMC MIGRATE plugin <= 0.0.3 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2025-23709WordPress Formatted post plugin <= 1.01 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

NotFound ReadMe CreatorWordPress ReadMe Creator plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

CVE-2025-23506WordPress WP IMAP Auth plugin <= 4.0.1 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

CVE-2025-23475WordPress History timeline plugin <= 0.7.2 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

CVE-2025-23449WordPress Simple shortcode buttons plugin <= 1.3.2 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2025-23462WordPress FWD Slider plugin <= 1.0 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

CVE-2025-22772WordPress Mapbox for WP Advanced Plugin <= 1.0.0 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

CVE-2025-23966WordPress a Gateway for Pasargad Bank on WooCommerce Plugin <= 2.5.2 - Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Linus Lundahl Good Old GalleryWordPress Good Old Gallery Plugin <= 2.1.2 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

WebArea Background animation blocksWordPress Background animation blocks Plugin <= 2.1.5 - Local File Inclusion vulnerability

8.1
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2025-23938WordPress Image Gallery Box by CRUDLab Plugin <= 1.0.3 - Local File Inclusion vulnerability

7.5
EPSS
0.04%
First published (updated )

CVE-2025-23944WordPress WOOEXIM Plugin <= 5.0.0 - PHP Object Injection vulnerability

8.8
EPSS
0.04%
First published (updated )

Mihajlovic Nenad Improved Sale Badges – Free VersionWordPress Improved Sale Badges – Free Version Plugin <= 1.0.1 - Local File Inclusion vulnerability

8.1
EPSS
0.04%
First published (updated )

NotFound Menus Plus+WordPress Menus Plus+ Plugin <= 1.9.6 - SQL Injection vulnerability

8.5
EPSS
0.04%
First published (updated )

ThemeFarmer Ultimate SubscribeWordPress Ultimate Subscribe Plugin <=1.3 - CSRF to Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

CVE-2025-23798WordPress Mass Messaging in BuddyPress Plugin <= 2.2.1 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

NotFound EU DSGVO HelperWordPress EU DSGVO Helper Plugin <= 1.0.6.1 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

CVE-2025-23867WordPress WordPress File Search Plugin <= 1.2 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

NotFound WP2APPWordPress WP2APP Plugin <= 2.6.2 - Reflected Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

PQINA SnippyWordPress Snippy Plugin <= 1.4.1 - CSRF to Cross Site Scripting (XSS) vulnerability

7.1
EPSS
0.04%
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203