German
7 kredili kayıt · son 12 ayda 7 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
26İzleyin | CVE-2025-14726Kavram kanıtı | Widgets for Social Photo Feed <= 1.8 - Missing Authentication to Unauthenticated Plugin Settings Access/Update via trustindex_feed_hook_instagram REST API endpotrustindex · widgets for social photo feed · CWE-200 | Orta6,5 | — | %0,8 | 2 May 2026 |
28İzleyin | CVE-2025-12975İstismar yok | CTX Feed – WooCommerce Product Feed Manager <= 6.6.11 - Missing Authorization to Authenticated (Shop Manager+) Arbitrary Plugin Installationwahid0003 · product feed manager for woocommerce – ctx feed – support 220+ shopping & social channels · CWE-862 | Yüksek7,2 | — | %0,9 | 19 Şub 2026 |
30İzleyin | CVE-2025-13457İstismar yok | WooCommerce Square <= 5.1.1 - Unauthenticated Insecure Direct Object Reference to Sensitive Information Exposure in get_token_by_idwoocommerce · woocommerce square · CWE-639 | Yüksek7,5 | — | %0,3 | 10 Oca 2026 |
21İzleyin | CVE-2025-14574İstismar yok | weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot <= 2.1.15 - Unauthenticated Sensitive Information Exposurewedevs · wedocs: ai powered knowledge base, docs, documentation, wiki & ai chatbot · CWE-200 | Orta5,3 | — | %0,4 | 9 Oca 2026 |
21İzleyin | CVE-2025-12891İstismar yok | Survey Maker <= 5.1.9.4 - Missing Authorization to Unauthenticated Information Exposureays-pro · survey maker · CWE-862 | Orta5,3 | — | %0,2 | 13 Kas 2025 |
21İzleyin | CVE-2025-12892İstismar yok | Survey Maker <= 5.1.9.4 - Missing Authorization to Unauthenticated Limited Option Updateays-pro · survey maker · CWE-862 | Orta5,3 | — | %0,2 | 13 Kas 2025 |
17İzleyin | CVE-2025-12833İstismar yok | GeoDirectory – WP Business Directory Plugin and Classified Listings Directory <= 2.8.139 - Missing Authorization to Authenticated (Author+) Arbitrary Image Attapaoltaia · geodirectory – wp business directory plugin and classified listings directory · CWE-639 | Orta4,3 | — | %0,2 | 12 Kas 2025 |
- CVE-2025-1472626İzleyin
Widgets for Social Photo Feed <= 1.8 - Missing Authentication to Unauthenticated Plugin Settings Access/Update via trustindex_feed_hook_instagram REST API endpo
OrtaCVSS 6,5Kavram kanıtıEPSS %1trustindex · widgets for social photo feed2 May 2026
- CVE-2025-1297528İzleyin
CTX Feed – WooCommerce Product Feed Manager <= 6.6.11 - Missing Authorization to Authenticated (Shop Manager+) Arbitrary Plugin Installation
YüksekCVSS 7,2İstismar yokEPSS %1wahid0003 · product feed manager for woocommerce – ctx feed – support 220+ shopping & social channels19 Şub 2026
- CVE-2025-1345730İzleyin
WooCommerce Square <= 5.1.1 - Unauthenticated Insecure Direct Object Reference to Sensitive Information Exposure in get_token_by_id
YüksekCVSS 7,5İstismar yokEPSS %0woocommerce · woocommerce square10 Oca 2026
- CVE-2025-1457421İzleyin
weDocs: AI Powered Knowledge Base, Docs, Documentation, Wiki & AI Chatbot <= 2.1.15 - Unauthenticated Sensitive Information Exposure
OrtaCVSS 5,3İstismar yokEPSS %0wedevs · wedocs: ai powered knowledge base, docs, documentation, wiki & ai chatbot9 Oca 2026
- CVE-2025-1289121İzleyin
Survey Maker <= 5.1.9.4 - Missing Authorization to Unauthenticated Information Exposure
OrtaCVSS 5,3İstismar yokEPSS %0ays-pro · survey maker13 Kas 2025
- CVE-2025-1289221İzleyin
Survey Maker <= 5.1.9.4 - Missing Authorization to Unauthenticated Limited Option Update
OrtaCVSS 5,3İstismar yokEPSS %0ays-pro · survey maker13 Kas 2025
- CVE-2025-1283317İzleyin
GeoDirectory – WP Business Directory Plugin and Classified Listings Directory <= 2.8.139 - Missing Authorization to Authenticated (Author+) Arbitrary Image Atta
OrtaCVSS 4,3İstismar yokEPSS %0paoltaia · geodirectory – wp business directory plugin and classified listings directory12 Kas 2025