joomla-exploits 😸 Title: Joomla! 4.2.8 - Unauthenticated information disclosure Exploit author: HACKFUT Date: 2024-01-24 Vendor Homepage: https://...
CVE-2026-XXXXX Admin SQL Injection in Testimonial Widgets WordPress Plugin via Search Parameter --- Advisory Information | Field | Value | |-------...
CVE-2026-XXXXX Unauthenticated SQL Injection in Sakura WordPress Theme via Comment Markdown Parser --- Advisory Information | Field | Value | |----...
CVE-2026-XXXXX Unauthenticated SQL Injection in Boxmoe Dove WordPress Theme via AJAX Comment Handler --- Advisory Information | Field | Value | |--...
The HD Quiz plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions 2.2.0 to 2.2.1. This is due to missing or incorrect nonce ...
The CodePeople Post Map for Google Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'cpm_point' Post Meta in all versions...
The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via 'query[select]' Paramet...
The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'search' parameter ...
The Ivory Search – WordPress Search Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'menu_title' and 'menu_magnifier_c...
HCL Traveler for Microsoft Outlook (HTMO) is susceptible to a sensitive data exposure vulnerability which could allow an attacker to exploit applic...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.