Winstone Servlet Engine through 0.9.10 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary files by sen...
Unauthenticated Cross Site Scripting (XSS) in Forminator
Subscriber Arbitrary File Deletion in JS Help Desk
Subscriber PHP Object Injection in EventPrime
Unauthenticated Cross Site Scripting (XSS) in TablePress
Improper Access Control vulnerability in Themeisle PPOM for WooCommerce allows Exploiting Incorrectly Configured Access Control Security Levels. T...
Contributor Remote Code Execution (RCE) in Post Snippets
Customer Cross Site Scripting (XSS) in Advanced Order Export For WooCommerce
Customer Broken Access Control in UPI QR Code Payment Gateway for WooCommerce
Unauthenticated Cross Site Scripting (XSS) in Master Slider
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.