Recent Advisories

Severity ID Title Vendor Product Date Type
Unknown ADV-1368

CVE-2025-2543 Advanced Accordion Gutenberg Block <= 5.0.1 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload

Vulnerability Details Basic Information Title CVE-2025-2543 Advanced Accordion Gutenberg Block

N/A N/A NEWS
Unknown ADV-1367

CVE-2025-3101 Configurator Theme Core <= 1.4.7 - Authenticated (Subscriber+) Privilege Escalation

Vulnerability Details Basic Information Title CVE-2025-3101 Configurator Theme Core

N/A N/A NEWS
Unknown ADV-1366

CVE-2025-3604 Flynax Bridge <= 2.2.0 - Unauthenticated Privilege Escalation via Account Takeover

Vulnerability Details Basic Information Title CVE-2025-3604 Flynax Bridge

N/A N/A NEWS
Unknown ADV-1365

CVE-2025-3607 Frontend Login and Registration Blocks <= 1.0.7 - Authenticated (Subscriber+) Privilege Escalation via Password Reset

Vulnerability Details Basic Information Title CVE-2025-3607 Frontend Login and Registration Blocks

N/A N/A NEWS
Unknown ADV-1364

CVE-2025-2579 Lottie Player <= 1.1.8 - Authenticated (Author+) Stored Cross-Site Scripting via File Upload

Vulnerability Details Basic Information Title CVE-2025-2579 Lottie Player

N/A N/A NEWS
Unknown ADV-1363

CVE-2025-3300 WPMasterToolKit (WPMTK) – All in one plugin <= 2.5.2 - Authenticated (Administrator+) to Arbitrary File Read and Write

Vulnerability Details Basic Information Title CVE-2025-3300 WPMasterToolKit (WPMTK) – All in one plugin

N/A N/A NEWS
Unknown ADV-1362

CVE-2025-3832 FuseDesk <= 6.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via successredirect Parameter

Vulnerability Details Basic Information Title CVE-2025-3832 FuseDesk

N/A N/A NEWS
Unknown ADV-1361

CVE-2025-3280 ELEX WooCommerce Advanced Bulk Edit Products, Prices & Attributes <= 1.4.9 - Authenticated (Subscriber+) SQL Injection

Vulnerability Details Basic Information Title CVE-2025-3280 ELEX WooCommerce Advanced Bulk Edit Products, Prices & Attributes

N/A N/A NEWS
Unknown ADV-1360

CVE-2025-3776 Verification SMS with TargetSMS <= 1.5 - Unauthenticated Limited Remote Code Execution

Vulnerability Details Basic Information Title CVE-2025-3776 Verification SMS with TargetSMS

N/A N/A NEWS
Unknown ADV-1359

CVE-2025-3603 Flynax Bridge <= 2.2.0 - Unauthenticated Privilege Escalation via Password Update

Vulnerability Details Basic Information Title CVE-2025-3603 Flynax Bridge

N/A N/A NEWS