Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
MEDIUM 5.3
CVE-2025-11564
The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capabil…
Tutor Lms
3.9.0+
HIGH 8.8
CVE-2025-5835
The Droip plugin for WordPress is vulnerable to unauthorized modification and access of data due to a missing capability check on the droip_post_apis…
Droip
after 2.2.0
HIGH 8.8
CVE-2025-5831
The Droip plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the make_google_font_offline() function…
Droip
after 2.2.0
MEDIUM 5.3
CVE-2025-1508
The WP Crowdfunding plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the download_data action i…
Wp Crowdfunding
after 2.1.13
MEDIUM 6.5
CVE-2024-13228
The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.8…
Qubely
1.8.14+
MEDIUM 5.4
CVE-2025-26767
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum Qubely qubely allows Stored XSS.This is…
Qubely
1.8.13+
MEDIUM 5.4
CVE-2024-9601
The Qubely – Advanced Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘align’ and 'UniqueID' parameter in…
Qubely
1.8.13+
HIGH 8.8
CVE-2023-41870
Missing Authorization vulnerability in Themeum WP Crowdfunding allows Exploiting Incorrectly Configured Access Control Security Levels.This issue aff…
Wp Crowdfunding
2.1.6+
MEDIUM 5.4
CVE-2024-11910
The WP Crowdfunding plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the wp-crowdfunding/search block in all versions up to, and…
Wp Crowdfunding
2.1.13+
HIGH 8.8
CVE-2024-53816
Missing Authorization vulnerability in Themeum Tutor LMS Elementor Addons tutor-lms-elementor-addons.This issue affects Tutor LMS Elementor Addons: f…
Tutor Lms Elementor Addons
2.1.6+
HIGH 7.5
CVE-2024-10400EPSS 82%
The Tutor LMS plugin for WordPress is vulnerable to SQL Injection via the ‘rating_filter’ parameter in all versions up to, and including, 2.7.6 due t…
Tutor Lms
after 2.7.6
MEDIUM 5.3
CVE-2024-10393
The Tutor LMS plugin for WordPress is vulnerable to bypass to user registration in versions up to, and including, 2.7.6. This is due to a missing che…
Tutor Lms
after 2.7.6
HIGH 8.8
CVE-2024-43142
Missing Authorization vulnerability in Themeum Tutor LMS allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects T…
Tutor Lms
2.7.4+
MEDIUM 5.4
CVE-2024-10117
The WP Crowdfunding plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's wpcf_donate shortcode in all versions up to, a…
Wp Crowdfunding
2.1.12+
HIGH 7.1
CVE-2024-5784
The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized administrative actions execution due to a missing capability checks on multiple…
Tutor Lms
2.7.3+
HIGH 7.5
CVE-2024-43955
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themeum Droip allows File Manipulation.This issue aff…
Droip
after 1.1.1
MEDIUM 6.3
CVE-2024-43954
Incorrect Authorization vulnerability in Themeum Droip allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Droip: from…
Droip
after 1.1.1
HIGH 8.8
CVE-2024-39645
Cross-Site Request Forgery (CSRF) vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.7.2.
Tutor Lms
2.7.3+
MEDIUM 5.4
CVE-2024-5576
The Tutor LMS Elementor Addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'course_carousel_skin' attribute within the …
Tutor Lms Elementor Addons
2.1.5+
HIGH 7.2
CVE-2024-43282
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS:…
Tutor Lms
2.7.3+
MEDIUM 5.4
CVE-2024-43231
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Themeum Tutor LMS allows Stored XSS.This…
Tutor Lms
2.7.4+
MEDIUM 5.3
CVE-2024-1798
The Tutor LMS – Migration Tool plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the tutor_lp_ex…
Tutor Lms Migration Tool
after 2.2.2
HIGH 7.2
CVE-2024-37266
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Themeum Tutor LMS allows Path Traversal.This issue af…
Tutor Lms
2.7.2+
HIGH 7.2
CVE-2024-37256
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS:…
Tutor Lms
2.7.2+
HIGH 8.8
CVE-2023-25799
Missing Authorization vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.1.8.
Tutor Lms
2.1.9+
HIGH 7.2
CVE-2024-4902
The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to time-based SQL Injection via the ‘course_id’ parameter in …
Tutor Lms
2.7.2+
HIGH 8.8
CVE-2024-4352
The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability c…
Tutor Lms
2.7.1+
HIGH 8.8
CVE-2024-4351
The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability c…
Tutor Lms
2.7.1+
HIGH 8.2
CVE-2024-4222
The Tutor LMS Pro plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability c…
Tutor Lms
2.7.1+
CRITICAL 9.8
CVE-2024-4223
The Tutor LMS plugin for WordPress is vulnerable to unauthorized access of data, modification of data, loss of data due to a missing capability check…
Tutor Lms
2.7.1+