Search Results (323539 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-67871 2025-12-13 N/A
Not used
CVE-2025-67870 2025-12-13 N/A
Not used
CVE-2025-67869 2025-12-13 N/A
Not used
CVE-2025-67868 2025-12-13 N/A
Not used
CVE-2025-67867 2025-12-13 N/A
Not used
CVE-2025-67866 2025-12-13 N/A
Not used
CVE-2025-67865 2025-12-13 N/A
Not used
CVE-2025-67864 2025-12-13 N/A
Not used
CVE-2025-67863 2025-12-13 N/A
Not used
CVE-2025-14066 2025-12-12 N/A
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2024-56045 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2025-12-12 9.3 Critical
Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS allows Path Traversal.This issue affects WPLMS: from n/a before 1.9.9.5.
CVE-2025-49925 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2025-12-12 7.3 High
Missing Authorization vulnerability in VibeThemes WPLMS wplms_plugin allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WPLMS: from n/a through <= 1.9.9.7.
CVE-2024-56047 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2025-12-12 8.5 High
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in VibeThemes WPLMS allows SQL Injection.This issue affects WPLMS: from n/a before 1.9.9.5.3.
CVE-2024-56048 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2025-12-12 8.8 High
Missing Authorization vulnerability in VibeThemes WPLMS allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects WPLMS: from n/a through 1.9.9.
CVE-2025-14538 1 Yangshare 1 Warehousemanager 2025-12-12 3.5 Low
A security vulnerability has been detected in yangshare warehouseManager 仓库管理系统 1.1.0. This affects the function addCustomer of the file CustomerManageHandler.java. Such manipulation of the argument Name leads to cross site scripting. The attack can be executed remotely. The exploit has been disclosed publicly and may be used.
CVE-2025-66590 1 Azeotech 1 Daqfactory 2025-12-12 N/A
In AzeoTech DAQFactory release 20.7 (Build 2555), an Out-of-bounds Write vulnerability can be exploited by an attacker to cause the program to write data past the end of an allocated memory buffer. This can lead to arbitrary code execution or a system crash.
CVE-2024-56049 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2025-12-12 8.5 High
Path Traversal: '.../...//' vulnerability in VibeThemes WPLMS allows Path Traversal.This issue affects WPLMS: from n/a before 1.9.9.5.2.
CVE-2024-56050 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2025-12-12 9.9 Critical
Unrestricted Upload of File with Dangerous Type vulnerability in VibeThemes WPLMS allows Upload a Web Shell to a Web Server.This issue affects WPLMS: from n/a before 1.9.9.5.3.
CVE-2025-14535 1 Utt 1 512w 2025-12-12 9.8 Critical
A vulnerability was identified in UTT 进取 512W up to 3.1.7.7-171114. Affected is the function strcpy of the file /goform/formConfigFastDirectionW. The manipulation of the argument ssid leads to buffer overflow. The attack may be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVE-2024-56051 2 Vibethemes, Wordpress 2 Wordpress Learning Management System, Wordpress 2025-12-12 8.5 High
Improper Control of Generation of Code ('Code Injection') vulnerability in VibeThemes WPLMS allows Code Injection.This issue affects WPLMS: from n/a before 1.9.9.5.