-Infinity
0

CVE-2025-27244AssetView and AssetView CLOUD contain an issue with acquiring sensitive information from sent data t…

First published (updated )

HT Insert Headers and Footers Code – HT ScriptInsert Headers and Footers Code – HT Script <= 1.1.2 - Missing Authorization to Authenticated (Subscriber+) Limited Options Update

First published (updated )

Dell Wyse Management SuiteMalicious File Upload

First published (updated )

Dell Wyse Management SuiteXSS

First published (updated )

Dell Wyse Management SuiteDell Wyse Management Suite, versions prior to WMS 5.1, contains an Insufficient Resource Pool vulne…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Dell Wyse Management SuiteDell Wyse Management Suite, versions prior to WMS 5.1, contains an Insecure Inherited Permissions vu…

First published (updated )

go/github.com/phires/go-guerrillaInput Validation

First published (updated )

Go-Guerrilla SMTP DaemonGo-Guerrilla SMTP Daemon allows the PROXY command to be sent multiple times

First published (updated )

rust/ouchBuffer Overflow

First published (updated )

npm/mathliveXSS

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ouch-orgouch-org ouch zip.rs convert_zip_date_time memory corruption

First published (updated )

Pixelgrade Nova Blocks for WordPressWordPress Nova Blocks by Pixelgrade plugin <= 2.1.8 - Cross Site Scripting (XSS) vulnerability

First published (updated )

Elementor Extensions for ElementorWordPress Extensions for Elementor plugin <= 2.0.40 - Cross Site Scripting (XSS) vulnerability

First published (updated )

Sliced InvoicesWordPress Sliced Invoices plugin <= 3.9.4 - Broken Access Control vulnerability

First published (updated )

thom4 WP-LESSWordPress WP-LESS plugin <= 1.9.3-3 - Sensitive Data Exposure vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

WordPress WP Mobile Bottom MenuWordPress WP Mobile Bottom Menu plugin <= 1.2.9 - Broken Access Control vulnerability

First published (updated )

ShortPixel Adaptive ImagesWordPress ShortPixel Adaptive Images plugin <= 3.10.0 - Broken Authentication vulnerability

First published (updated )

Animesh Kumar Advanced Speed IncreaserWordPress Advanced Speed Increaser Plugin <= 2.2.1 - Cross Site Request Forgery (CSRF) vulnerability

First published (updated )

HPE Aruba Networking Virtual Intranet AccessArbitrary File Overwrite in HPE Aruba Networking Virtual Intranet Access (VIA) Microsoft Windows Client

First published (updated )

Pluginic FancyPostWordPress FancyPost plugin <= 6.0.1 - Cross Site Scripting (XSS) vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

SheetDBWordPress SheetDB Plugin <= 1.3.3 - Cross Site Scripting (XSS) vulnerability

First published (updated )

Ajay WebberZone SnippetzWordPress WebberZone Snippetz plugin <= 2.1.0 - Cross Site Scripting (XSS) vulnerability

First published (updated )

WordPress WP Clone any post typeWordPress WP Clone any post type Plugin <= 3.4 - Open Redirect vulnerability

First published (updated )

WordPress WP Clone any post typeWordPress WP Clone any post type Plugin <= 3.4 - Broken Access Control vulnerability

First published (updated )

WP AutoKeywordWordPress WP AutoKeyword plugin <= 1.0 - Arbitrary Content Deletion vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Modernaweb Black Widgets For Elementor WordPressWordPress Black Widgets For Elementor plugin <= 1.3.9 - Cross Site Scripting (XSS) vulnerability

First published (updated )

Themehigh Job Manager & CareerWordPress JS Job Manager plugin <= 2.0.2 - Broken Access Control vulnerability

First published (updated )

Themehigh Job Manager & CareerWordPress JS Job Manager Plugin <= 2.0.2 - Insecure Direct Object References (IDOR) vulnerability

First published (updated )

ShipDepot for WooCommerceWordPress ShipDepot for WooCommerce plugin <= 1.2.19 - Broken Access Control vulnerability

First published (updated )

CartBoss SMS Abandoned Cart RecoveryWordPress CartBoss plugin <= 4.1.2 - Broken Access Control vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203