Recent Advisories

Severity ID Title Vendor Product Date Type
HIGH 7.8 CVE-2025-48643

CVE-2025-48643_CVE-2025-48643

In multiple locations there is a possible provisioning bypass due to improper input validation. This could lead to local escalation of privilege wi...

Google Android 17 CVE
HIGH 7.8 CVE-2026-0019

CVE-2026-0019_CVE-2026-0019

In SettingsLib, there is a possible way to disable system components due to a logic error in the code. This could lead to local escalation of privi...

Google Android 17 CVE
HIGH 8.6 CVE-2025-69128

WordPress JobCareer theme <= 7.3 - Arbitrary File Deletion vulnerability_CVE-2025-69128

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in EMV JobCareer allows Path Traversal. This issue af...

EMV JobCareer n/a CVE
HIGH 8.1 CVE-2025-69126

WordPress Fortius theme <= 2.3.0 - Local File Inclusion vulnerability_CVE-2025-69126

Unauthenticated Local File Inclusion in Fortius

ThemeREX Fortius n/a CVE
HIGH 8.1 CVE-2025-69123

WordPress Snow Club theme <= 1.1 - Local File Inclusion vulnerability_CVE-2025-69123

Unauthenticated Local File Inclusion in Snow Club

ThemeREX Snow Club n/a CVE
HIGH 8.1 CVE-2025-69120

WordPress Dazzle theme <= 1.0.0 - Local File Inclusion vulnerability_CVE-2025-69120

Unauthenticated Local File Inclusion in Dazzle

ThemeREX Dazzle n/a CVE
HIGH 7.5 A3592ABD-E61F-

Exploit for CVE-2024-38819_A3592ABD-E61F-5364-B002-A96843C8D65B

CVE-2024-38819 Customer Vault Lab This is a Cloud Foundry-ready Spring Boot demo for CVE-2024-38819, a Spring Framework path traversal vulnerabilit...

N/A N/A GITHUBEXPLOIT
HIGH 8.1 CVE-2025-69115

WordPress LuxMed | Medicine & Healthcare Doctor WordPress Theme theme <= 1.2.2 - Local File Inclusion vulnerability_CVE-2025-69115

Unauthenticated Local File Inclusion in LuxMed | Medicine & Healthcare Doctor WordPress Theme

ThemeREX LuxMed | Medicine & Healthcare Doctor WordPress Theme n/a CVE
HIGH 8.1 CVE-2025-69106

WordPress Imba theme <= 1.5.0 - Local File Inclusion vulnerability_CVE-2025-69106

Unauthenticated Local File Inclusion in Imba

ThemeREX Imba n/a CVE
HIGH 7.1 CVE-2025-68524

WordPress Avante theme < 3.0.5 - Reflected Cross Site Scripting (XSS) vulnerability_CVE-2025-68524

Unauthenticated Cross Site Scripting (XSS) in Avante < 3.0.5 versions.

ThemeGoods Avante n/a CVE