A vulnerability has been found in jupyterhub ltiauthenticator 1.3.0 and classified as very critical. This vulnerability affects the function LTI13Authenticator. The manipulation leads to improper verification of cryptographic signature.
This vulnerability was named CVE-2023-25574. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in xfinitysoft Order Limit for WooCommerce Plugin up to 3.0.2 on WordPress. This affects an unknown part. The manipulation leads to missing authorization.
This vulnerability is uniquely identified as CVE-2025-26928. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Bowo System Dashboard Plugin up to 2.8.18 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to exposure of sensitive system information to an unauthorized control sphere.
This vulnerability is handled as CVE-2025-26911. The attack may be launched remotely. There is no exploit available.
A vulnerability classified as critical has been found in Jürgen Müller Easy Quotes Plugin up to 1.2.2 on WordPress. Affected is an unknown function. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2025-26943. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in PickPlugins Wishlist Plugin up to 1.0.41 on WordPress. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2025-26915. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in webandprint AR for WordPress Plugin up to 7.7 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-26913. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in Tribulant Gallery Voting Plugin up to 1.2.1 on WordPress. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2025-26931. The attack can be initiated remotely. There is no exploit available.
A vulnerability was found in WPExperts WP Multi Store Locator Plugin up to 2.5.1 on WordPress. It has been classified as critical. This affects an unknown part. The manipulation leads to sql injection.
This vulnerability is uniquely identified as CVE-2025-26974. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in ameliabooking Amelia Plugin up to 1.2.16 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to authorization bypass.
This vulnerability is handled as CVE-2025-26965. The attack may be launched remotely. There is no exploit available.
A vulnerability has been found in enituretechnology Small Package Quotes Plugin up to 2.4.9 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to missing authorization.
This vulnerability is known as CVE-2025-26960. The attack can be launched remotely. There is no exploit available.
A vulnerability, which was classified as critical, was found in jgwhite33 WP Yelp Review Slider Plugin up to 8.1 on WordPress. Affected is an unknown function. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2025-26946. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability classified as critical has been found in Jürgen Müller Easy Quotes Plugin up to 1.2.2 on WordPress. Affected is an unknown function. The manipulation leads to sql injection.
This vulnerability is traded as CVE-2025-26943. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in VW Themes Ibtana Plugin up to 1.2.4.9 on WordPress. This issue affects some unknown processing. The manipulation leads to cross site scripting.
The identification of this vulnerability is CVE-2025-26891. The attack may be initiated remotely. There is no exploit available.
A vulnerability was found in PickPlugins Wishlist Plugin up to 1.0.41 on WordPress. It has been rated as critical. This issue affects some unknown processing. The manipulation leads to sql injection.
The identification of this vulnerability is CVE-2025-26915. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in wpsoul Greenshift Plugin up to 10.8 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-26884. The attack can be initiated remotely. There is no exploit available.
A vulnerability classified as problematic has been found in wpjobportal WP Job Portal Plugin up to 2.2.8 on WordPress. This affects an unknown part. The manipulation leads to path traversal: '.../...//'.
This vulnerability is uniquely identified as CVE-2025-26935. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Kiran Potphode Easy Charts Plugin up to 1.2.3 on WordPress. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-26893. The attack may be launched remotely. There is no exploit available.
A vulnerability was found in GhozyLab Popup Builder Plugin up to 1.1.33 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-26882. The attack can be launched remotely. There is no exploit available.