Recent Advisories

Severity ID Title Vendor Product Date Type
Unknown ADV-9204

Bonanza – WooCommerce Free Gifts Lite <= 1.0.0 - Missing Authorization to Authenticated (Subscriber+) Opt In Success

CVE Details Basic Information Title Bonanza – WooCommerce Free Gifts Lite

N/A N/A NEWS
Unknown ADV-9203

Fan Page <= 1.0.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via width Parameter

CVE Details Basic Information Title Fan Page

N/A N/A NEWS
Unknown ADV-9202

YouTube Embed <= 10.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via instance Parameter

CVE Details Basic Information Title YouTube Embed

N/A N/A NEWS
Unknown ADV-9201

Hydra Booking 1.1.0 – 1.1.18 – Missing Authorization to Authenticated (Subscriber+) Privilege Escalation via tfhb_reset_password_callback Function

CVE Details Basic Information Title Hydra Booking 1.1.0 – 1.1.18 – Missing Authorization to Authenticated (Subscriber+) Privilege Escal...

N/A N/A NEWS
Unknown ADV-9200

Sky Addons for Elementor <= 3.1.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets

CVE Details Basic Information Title Sky Addons for Elementor

N/A N/A NEWS
Unknown ADV-9199

Magical Addons For Elementor <= 1.3.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes

CVE Details Basic Information Title Magical Addons For Elementor

N/A N/A NEWS
Unknown ADV-9192

SolarWinds Web Help Desk XML External Entity Injection (XXE) Vulnerability

CVE Details Basic Information Title SolarWinds Web Help Desk XML External Entity Injection (XXE) Vulnerability Type cve Published 2025-07-29T08:07:...

N/A N/A NEWS
Unknown ADV-9190

CVE-2025-53081

CVE Details Basic Information Title CVE-2025-53081 Type cve Published 2025-07-29T05:06:47.194Z Modified 2025-07-29T05:08:56.100Z Product Informatio...

N/A N/A NEWS
Unknown ADV-9189

CVE-2025-53082

CVE Details Basic Information Title CVE-2025-53082 Type cve Published 2025-07-29T05:08:25.846Z Modified 2025-07-29T05:08:25.846Z Product Informatio...

N/A N/A NEWS
Unknown ADV-9188

Elementor <= 3.29.0 - Authenticated (Contributor+) Stored Cross-Site Scripting

CVE Details Basic Information Title Elementor

N/A N/A NEWS