CVE-2023-2670

creation_timestamp| type| source ---|---|--- 2025-09-11 18:00:44+00:00| seen|...Read More ...

Continue Reading
CVE-2025-43782

Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2.0 through 2024.Q2.7, 2024.Q1.1 through 2024.Q1.12, and 7.4 GA through update 92 ...

Continue Reading
CVE-2025-43782

Insecure Direct Object Reference (IDOR) vulnerability in Liferay Portal 7.4.0 through 7.4.3.124, and Liferay DXP 2024.Q2.0 through 2024.Q2.7, 2024.Q1.1 through 2024.Q1.12, and 7.4 GA through update 92 ...

Continue Reading
CVE-2025-8692 Coupon API

The Coupon API plugin for WordPress is vulnerable to SQL Injection via the ‘log_duration’ parameter in all versions up to, and including, 6.2.9 due to insufficient escaping on the user supplied pa ...

Continue Reading
CVE-2025-8422 Propovoice

The Propovoice: All-in-One Client Management System plugin for WordPress is vulnerable to Arbitrary File Read in all versions up to, and including, 1.7.6.7 via the send_email() function. This makes it ...

Continue Reading
CVE-2025-9628 The integration of the AMO.CRM

The The integration of the AMO.CRM plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.1. This is due to missing or incorrect nonce validation on ...

Continue Reading
CVE-2025-8721 Workable API

The Workable Api plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's workable_jobs shortcode in all versions up to, and including, 1.0.4 due to insufficient input s ...

Continue Reading
CVE-2025-58320

creation_timestamp| type| source ---|---|--- 2025-09-11 10:31:50+00:00| seen|...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: