A vulnerability marked as problematic has been reported in Mikado-Themes Bard Plugin up to 1.6 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is listed as CVE-2025-64368. The attack may be initiated remotely. There is no available exploit.
A vulnerability labeled as problematic has been found in Adrian Tobey Groundhogg Plugin up to 4.2.6 on WordPress. Affected is an unknown function. Executing manipulation can lead to cross site scripting.
This vulnerability is tracked as CVE-2025-64367. The attack can be launched remotely. No exploit exists.
A vulnerability identified as problematic has been detected in colabrio Ohio Extra Plugin up to 3.6.0 on WordPress. This impacts an unknown function. Performing manipulation results in cross site scripting.
This vulnerability is identified as CVE-2025-64365. The attack can be initiated remotely. There is not any exploit available.
A vulnerability categorized as problematic has been discovered in SeventhQueen K Elements Plugin up to 5.5.0 on WordPress. This affects an unknown function. Such manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2025-64362. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability was found in StylemixThemes Consulting Elementor Widgets Plugin up to 1.4.2 on WordPress. It has been rated as problematic. The impacted element is an unknown function. This manipulation causes cross site scripting.
The identification of this vulnerability is CVE-2025-64361. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Younes JFR Advanced Database Cleaner Plugin up to 3.1.6 on WordPress. It has been declared as problematic. The affected element is an unknown function. The manipulation results in cross-site request forgery.
This vulnerability was named CVE-2025-64357. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in Matias Ventura Gutenberg Plugin up to 21.8.2 on WordPress. It has been classified as problematic. Impacted is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-64354. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability was found in Chouby Polylang Plugin up to 3.7.3 on WordPress and classified as critical. This issue affects some unknown processing. Executing manipulation can lead to deserialization.
This vulnerability is handled as CVE-2025-64353. The attack can be executed remotely. There is not any exploit available.
A vulnerability has been found in Stylemix MasterStudy LMS Plugin up to 3.6.27 on WordPress and classified as critical. This vulnerability affects unknown code. Performing manipulation results in sql injection.
This vulnerability is known as CVE-2025-64366. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability, which was classified as critical, was found in WPDeveloper Essential Addons for Elementor Plugin up to 6.2.4 on WordPress. This affects an unknown part. Such manipulation leads to missing authorization.
This vulnerability is traded as CVE-2025-64352. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in Rank Math SEO Plugin up to 1.0.252.1 on WordPress. Affected by this issue is some unknown functionality. This manipulation causes insertion of sensitive information into sent data.
This vulnerability appears as CVE-2025-64351. The attack may be initiated remotely. There is no available exploit.
A vulnerability classified as critical was found in StylemixThemes Masterstudy Plugin up to 4.8.126 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation results in improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is reported as CVE-2025-64364. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.
A vulnerability classified as critical has been found in Rank Math SEO Plugin up to 1.0.252.1 on WordPress. Affected is an unknown function. The manipulation leads to missing authorization.
This vulnerability is documented as CVE-2025-64350. The attack can be initiated remotely. There is not any exploit available.
A vulnerability described as critical has been identified in WebToffee Smart Coupons for WooCommerce Plugin up to 2.2.3 on WordPress. This impacts an unknown function. Executing manipulation can lead to missing authorization.
This vulnerability is registered as CVE-2025-64358. It is possible to launch the attack remotely. No exploit is available.
A vulnerability marked as critical has been reported in SeventhQueen Kleo Plugin up to 5.5.0 on WordPress. This affects an unknown function. Performing manipulation results in improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is cataloged as CVE-2025-64363. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability labeled as critical has been found in StylemixThemes Consulting Elementor Widgets Plugin up to 1.4.2 on WordPress. The impacted element is an unknown function. Such manipulation leads to improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is listed as CVE-2025-64360. The attack may be performed from remote. There is no available exploit.
A vulnerability identified as critical has been detected in StylemixThemes Consulting Plugin up to 6.7.5 on WordPress. The affected element is an unknown function. This manipulation causes improper control of filename for include/require statement in php program ('php remote file inclusion').
This vulnerability is tracked as CVE-2025-64359. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability categorized as critical has been discovered in f1logic Insert PHP Code Snippet Plugin up to 1.4.3 on WordPress. Impacted is an unknown function. The manipulation results in missing authorization.
This vulnerability is identified as CVE-2025-64356. The attack can be executed remotely. There is not any exploit available.