| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-4206 | WordPress CRM, Email & Marketing Automation for WordPress | Award Winner — Groundhogg <= 4.1.1.2 - Authenticated (Administrator+) Arbitrary File Deletion | trainingbusinesspros | Groundhogg — CRM, Newsletters, and Marketing Automation | High | 7.2 | 2025-05-09 11:11:19 | Deep Dive |
| CVE-2025-47644 | WordPress Integrations of Zoho CRM with Elementor form plugin <= 1.0.8 - Open Redirection Vulnerability | formsintegrations | Integrations of Zoho CRM with Elementor form | Medium | 4.7 | 2025-05-07 14:20:43 | Deep Dive |
| CVE-2025-47629 | WordPress WP-CRM System plugin <= 3.4.5 - PHP Object Injection vulnerability | Mario Peshev | WP-CRM System | High | 7.2 | 2025-05-07 14:20:38 | Deep Dive |
| CVE-2025-47456 | WordPress WP Gravity Forms Zendesk plugin <= 1.1.2 - Open Redirection Vulnerability | CRM Perks | WP Gravity Forms Zendesk | Medium | 4.7 | 2025-05-07 14:19:38 | Deep Dive |
| CVE-2025-47454 | WordPress WP Gravity Forms Dynamics CRM plugin <= 1.1.4 - Open Redirection Vulnerability | CRM Perks | WP Gravity Forms Dynamics CRM | Medium | 4.7 | 2025-05-07 14:19:37 | Deep Dive |
| CVE-2025-47455 | WordPress Integration for WooCommerce and Salesforce plugin <= 1.7.5 - Open Redirection Vulnerability | CRM Perks | Integration for WooCommerce and Salesforce | Medium | 4.7 | 2025-05-07 14:19:37 | Deep Dive |
| CVE-2025-32512 | WordPress Revamp CRM for WooCommerce plugin <= 1.1.2 - Reflected Cross Site Scripting (XSS) vulnerability | revampcrm | Revamp CRM for WooCommerce | High | 7.1 | 2025-04-17 15:47:46 | Deep Dive |
| CVE-2025-39558 | WordPress CRM Perks plugin <= 1.1.7 - Reflected Cross Site Scripting (XSS) vulnerability | CRM Perks | CRM Perks | High | 7.1 | 2025-04-17 15:46:50 | Deep Dive |
| CVE-2025-39600 | WordPress Integration for WooCommerce and QuickBooks plugin <= 1.3.1 - Cross Site Request Forgery (CSRF) Vulnerability | CRM Perks | Integration for WooCommerce and QuickBooks | Medium | 4.3 | 2025-04-16 12:44:16 | Deep Dive |
| CVE-2025-21582 | Oracle E-Business Suite 安全漏洞 | Oracle Corporation | Oracle CRM Technical Foundation | Medium | 6.1 | 2025-04-15 20:30:56 | Deep Dive |
| CVE-2025-3568 | Webkul Krayin CRM SVG File edit cross site scripting | Webkul | Krayin CRM | Low | 3.5 | 2025-04-14 13:31:04 | Deep Dive |
| CVE-2025-30582 | WordPress DyaPress ERP/CRM plugin <= 18.0.2.0 - Local File Inclusion Vulnerability | aytechnet | DyaPress ERP/CRM | High | 8.1 | 2025-04-10 08:09:41 | Deep Dive |
| CVE-2025-32224 | WordPress Privyr CRM plugin <= 1.0.2 - Broken Access Control vulnerability | Shivam Mani Tripathi | Privyr CRM Integration | Medium | 5.4 | 2025-04-04 15:59:50 | Deep Dive |
| CVE-2025-32269 | WordPress WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms Plugin <= 1.1.3 - Cross Site Request Forgery (CSRF) to Settings Change vulnerability | CRM Perks | WP Zendesk for Contact Form 7, WPForms, Elementor, Formidable and Ninja Forms | Medium | 4.3 | 2025-04-04 15:59:43 | Deep Dive |
| CVE-2025-2798 | Woffice <= 5.4.21 - Authentication Bypass via Registration Role | XTENDIFY | Woffice CRM | Critical | 9.8 | 2025-04-04 13:44:36 | Deep Dive |
| CVE-2025-3219 | CodeCanyon Perfex CRM Project Discussions Module 2 cross site scripting | CodeCanyon | Perfex CRM | Low | 3.5 | 2025-04-04 07:31:05 | Deep Dive |
| CVE-2025-31909 | WordPress Apptivo Business Site CRM plugin <= 5.3 - Arbitrary Content Deletion vulnerability | Apptivo | Apptivo Business Site CRM | High | 7.5 | 2025-04-03 13:27:18 | Deep Dive |
| CVE-2025-31821 | WordPress Integration of Zoho CRM and Contact Form 7 plugin <= 1.0.6 - Open Redirection Vulnerability | formsintegrations | Integration of Zoho CRM and Contact Form 7 | Medium | 4.7 | 2025-04-01 14:51:46 | Deep Dive |
| CVE-2025-1267 | Groundhogg <= 3.7.4.1 - Authenticated (Administrator+) Stored Cross-Site Scripting via label Parameter | trainingbusinesspros | Groundhogg — CRM, Newsletters, and Marketing Automation | Medium | 5.5 | 2025-04-01 06:52:05 | Deep Dive |
| CVE-2025-2974 | CodeCanyon Perfex CRM Contracts contract cross site scripting | CodeCanyon | Perfex CRM | Low | 3.5 | 2025-03-31 03:31:06 | Deep Dive |