Recent Advisories

Severity ID Title Vendor Product Date Type
Unknown ADV-8315

Forminator Forms – Contact Form, Payment Form & Custom Form Builder <= 1.45.0 - Authenticated (Administrator+) SQL Injection via `order_by` Parameter

CVE Details Basic Information Title Forminator Forms – Contact Form, Payment Form & Custom Form Builder

N/A N/A NEWS
Unknown ADV-8314

Attachment Manager <= 2.1.2 - Unauthenticated Arbitrary File Deletion

CVE Details Basic Information Title Attachment Manager

N/A N/A NEWS
Unknown ADV-8313

Ruven Themes: Shortcodes <= 1.0 - Authenticated (Contributor+) Stored Cross-Site Scripting

CVE Details Basic Information Title Ruven Themes: Shortcodes

N/A N/A NEWS
Unknown ADV-8312

Map My Locations <= 1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting

CVE Details Basic Information Title Map My Locations

N/A N/A NEWS
Unknown ADV-8308

PHPGurukul Art Gallery Management System edit-art-medium-detail.php cross site scripting

CVE Details Basic Information Title PHPGurukul Art Gallery Management System edit-art-medium-detail.php cross site scripting Type cve Published 202...

N/A N/A NEWS
Unknown ADV-8307

thinkgem JeeSite Site Controller/SSO redirect

CVE Details Basic Information Title thinkgem JeeSite Site Controller/SSO redirect Type cve Published 2025-07-17T22:14:07.803Z Modified 2025-07-17T2...

N/A N/A NEWS
Unknown ADV-8306

code-projects Online Appointment Booking System deletedoctorclinic.php sql injection

CVE Details Basic Information Title code-projects Online Appointment Booking System deletedoctorclinic.php sql injection Type cve Published 2025-07...

N/A N/A NEWS
Unknown ADV-8305

code-projects Online Appointment Booking System addmanagerclinic.php sql injection

CVE Details Basic Information Title code-projects Online Appointment Booking System addmanagerclinic.php sql injection Type cve Published 2025-07-1...

N/A N/A NEWS
Unknown ADV-8303

PHPGurukul Land Record System edit-property.php sql injection

CVE Details Basic Information Title PHPGurukul Land Record System edit-property.php sql injection Type cve Published 2025-07-17T21:02:07.706Z Modif...

N/A N/A NEWS
Unknown ADV-8302

TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg buffer overflow

CVE Details Basic Information Title TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg buffer overflow Type cve Published 2025-07-17T21:14:0...

N/A N/A NEWS