Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
HIGH 7.5
CVE-2020-36972
SmartBlog 2.0.1 contains a blind SQL injection vulnerability in the 'id_post' parameter of the details controller that allows attackers to extract da…
Smartblog
No fix yet
MEDIUM 6.1
CVE-2024-12725
The Clasify Classified Listing WordPress plugin through 1.0.7 does not sanitise and escape a parameter before outputting it back in the page, leading…
Clasify Classified Listing
after 1.0.7
MEDIUM 6.1
CVE-2025-23857
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SmartDataSoft Essential WP Real Estate essentia…
Essential Wp Real Estate
after 1.1.3
MEDIUM 6.8
CVE-2024-13347
The Essential WP Real Estate WordPress plugin through 1.1.3 does not escape generated URLs before outputting them in attributes, leading to Reflected…
Essential Wp Real Estate
after 1.1.3
MEDIUM 5.3
CVE-2024-13318
The Essential WP Real Estate plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the cl_delete_listing_fun…
Essential Wp Real Estate
after 1.1.3
CRITICAL 9.8
CVE-2021-37538EPSS 74%
Multiple SQL injection vulnerabilities in SmartDataSoft SmartBlog for PrestaShop before 4.06 allow a remote unauthenticated attacker to execute arbit…
Smartblog
4.06+
MEDIUM 6.1
CVE-2021-24335
The Car Repair Services & Auto Mechanic WordPress theme before 4.0 did not properly sanitise its serviceestimatekey search parameter before outputtin…
Car Repair Services \& Auto Mechanic
4.0+