Search Results (9915 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-26963 1 Flowdee 1 Clickwhale 2026-04-01 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in ClickWhale ClickWhale clickwhale allows Cross Site Request Forgery.This issue affects ClickWhale: from n/a through <= 2.4.3.
CVE-2025-26935 1 Wpjobportal 1 Wp Job Portal 2026-04-01 8.8 High
Path Traversal: '.../...//' vulnerability in wpjobportal WP Job Portal wp-job-portal allows PHP Local File Inclusion.This issue affects WP Job Portal: from n/a through <= 2.2.8.
CVE-2025-26910 1 Iqonic 1 Wpbookit 2026-04-01 6.1 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Iqonic Design WPBookit wpbookit allows Stored XSS.This issue affects WPBookit: from n/a through <= 1.0.1.
CVE-2025-26876 1 Codemanas 1 Search With Typesense 2026-04-01 4.9 Medium
Path Traversal: '.../...//' vulnerability in CodeManas Search with Typesense search-with-typesense allows Path Traversal.This issue affects Search with Typesense: from n/a through <= 2.0.8.
CVE-2025-25168 1 Blackandwhitedigital 1 Bookpress 2026-04-01 6.1 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Black and White BookPress – For Book Authors book-press allows Cross-Site Scripting (XSS).This issue affects BookPress – For Book Authors: from n/a through <= 1.2.7.
CVE-2025-25166 1 Gabrieldarezzo 1 Inlocation 2026-04-01 6.1 Medium
Cross-Site Request Forgery (CSRF) vulnerability in gabrieldarezzo InLocation inlocation allows Stored XSS.This issue affects InLocation: from n/a through <= 1.8.
CVE-2025-25160 1 Markbarnes 1 Style Tweaker 2026-04-01 6.1 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Mark Barnes Style Tweaker style-tweaker allows Stored XSS.This issue affects Style Tweaker: from n/a through <= 0.11.
CVE-2025-24742 1 Codecabin 1 Wp Go Maps 2026-04-01 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in WPGMaps WP Go Maps wp-google-maps.This issue affects WP Go Maps: from n/a through <= 9.0.40.
CVE-2025-24717 1 Wow-company 1 Modal Window 2026-04-01 8.8 High
Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Modal Window modal-window allows Cross Site Request Forgery.This issue affects Modal Window: from n/a through <= 6.1.4.
CVE-2025-24715 1 Wow-company 1 Counter Box 2026-04-01 N/A
Cross-Site Request Forgery (CSRF) vulnerability in Wow-Company Counter Box counter-box allows Cross Site Request Forgery.This issue affects Counter Box: from n/a through <= 2.0.5.
CVE-2025-24698 1 G5plus 1 Essential Real Estate 2026-04-01 N/A
Cross-Site Request Forgery (CSRF) vulnerability in g5theme Essential Real Estate essential-real-estate allows Cross Site Request Forgery.This issue affects Essential Real Estate: from n/a through <= 5.1.8.
CVE-2025-24546 1 Rstheme 1 Ultimate Coming Soon \& Maintenance 2026-04-01 N/A
Cross-Site Request Forgery (CSRF) vulnerability in RSTheme Ultimate Coming Soon & Maintenance ultimate-coming-soon allows Cross Site Request Forgery.This issue affects Ultimate Coming Soon & Maintenance: from n/a through <= 1.0.9.
CVE-2025-24543 1 Rstheme 1 Ultimate Coming Soon \& Maintenance 2026-04-01 N/A
Cross-Site Request Forgery (CSRF) vulnerability in RSTheme Ultimate Coming Soon & Maintenance ultimate-coming-soon allows Cross Site Request Forgery.This issue affects Ultimate Coming Soon & Maintenance: from n/a through <= 1.0.9.
CVE-2025-23639 1 Mdc Youtube Downloader Project 1 Mdc Youtube Downloader 2026-04-01 6.1 Medium
Cross-Site Request Forgery (CSRF) vulnerability in Nazmul Ahsan MDC YouTube Downloader mdc-youtube-downloader allows Stored XSS.This issue affects MDC YouTube Downloader: from n/a through <= 3.0.0.
CVE-2025-22786 2 Elementinvader, Wordpress 2 Elementinvader Addons For Elementor, Wordpress 2026-04-01 8.8 High
Path Traversal: '.../...//' vulnerability in Element Invader ElementInvader Addons for Elementor elementinvader-addons-for-elementor allows PHP Local File Inclusion.This issue affects ElementInvader Addons for Elementor: from n/a through <= 1.2.6.
CVE-2024-56229 1 Searchiq 1 Searchiq 2026-04-01 4.3 Medium
Cross-Site Request Forgery (CSRF) vulnerability in SearchIQ SearchIQ searchiq.This issue affects SearchIQ: from n/a through <= 4.6.
CVE-2024-56222 1 Codebard 1 Codebard Help Desk 2026-04-01 5.4 Medium
Cross-Site Request Forgery (CSRF) vulnerability in CodeBard CodeBard Help Desk codebard-help-desk allows Cross Site Request Forgery.This issue affects CodeBard Help Desk: from n/a through <= 1.1.1.
CVE-2024-56213 2 Themewinter, Wordpress 2 Eventin, Wordpress 2026-04-01 8.8 High
Path Traversal: '.../...//' vulnerability in Arraytics Eventin wp-event-solution allows Path Traversal.This issue affects Eventin: from n/a through <= 4.0.7.
CVE-2024-56055 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2026-04-01 8.8 High
Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS wplms_plugin allows Path Traversal.This issue affects WPLMS: from n/a through < 1.9.9.5.2.
CVE-2024-56049 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2026-04-01 N/A
Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS wplms_plugin allows Path Traversal.This issue affects WPLMS: from n/a through < 1.9.9.5.2.