| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-49080 | Memory management vulnerability in Absolute Secure Access server versions 9.0 to 13.54 | Absolute Security | Secure Access | - | - | 2025-06-12 17:08:50 | Deep Dive |
| CVE-2025-27706 | Cross-site scripting vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.54 | Absolute Security | Secure Access | - | - | 2025-05-28 21:01:09 | Deep Dive |
| CVE-2025-27703 | Privilege escalation in the management console of Absolute Secure Access prior to version 13.54 | Absolute Security | Secure Access | - | - | 2025-05-28 20:56:53 | Deep Dive |
| CVE-2025-27702 | Permissions bypass in the management console of Absolute Secure Access prior to version 13.54 | Absolute Security | Secure Access | - | - | 2025-05-28 20:42:35 | Deep Dive |
| CVE-2025-43833 | WordPress Absolute Links plugin <= 1.1.1 - SQL Injection vulnerability | Amir Helzer | Absolute Links | High | 7.6 | 2025-05-19 17:29:57 | Deep Dive |
| CVE-2024-6364 | Server Identity Validation Bypass in Absolute Persistence® | Absolute Security | Absolute Persistence | - | - | 2025-05-13 17:00:07 | Deep Dive |
| CVE-2025-1802 | HT Mega – Absolute Addons For Elementor <= 2.8.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets | devitemsllc | HT Mega Addons for Elementor – Elementor Widgets & Template Builder | Medium | 6.4 | 2025-03-20 11:11:27 | Deep Dive |
| CVE-2025-27705 | Absolute Secure Access 安全漏洞 | Absolute Security | Secure Access | 中危 | - | 2025-03-19 19:15:08 | Deep Dive |
| CVE-2025-27704 | Absolute Secure Access 安全漏洞 | Absolute Security | Secure Access | 中危 | - | 2025-03-19 19:08:26 | Deep Dive |
| CVE-2025-1261 | HT Mega – Absolute Addons For Elementor <= 2.8.2 - Authenticated (Contributor+) DOM-Based Stored Cross-Site Scripting via Countdown Widget | devitemsllc | HT Mega Addons for Elementor – Elementor Widgets & Template Builder | Medium | 6.4 | 2025-03-08 01:44:27 | Deep Dive |
| CVE-2024-12599 | HT Mega – Absolute Addons For Elementor <= 2.8.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Countdown Widget | devitemsllc | HT Mega Addons for Elementor – Elementor Widgets & Template Builder | Medium | 6.4 | 2025-02-11 04:21:22 | Deep Dive |
| CVE-2024-12597 | HT Mega <= 2.7.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via block_css and inner_css | devitemsllc | HT Mega Addons for Elementor – Elementor Widgets & Template Builder | Medium | 6.4 | 2025-02-04 06:41:53 | Deep Dive |
| CVE-2024-40875 | Cross-site scripting vulnerability in the Secure Access administrative console prior to 13.52 | Absolute Software | Secure Access | 中危 | - | 2024-12-20 20:17:27 | Deep Dive |
| CVE-2024-52496 | WordPress Absolute Addons For Elementor plugin <= 1.0.14 - Local File Inclusion vulnerability | AbsolutePlugins | Absolute Addons For Elementor | High | 7.5 | 2024-11-28 10:41:57 | Deep Dive |
| CVE-2024-8965 | Absolute Reviews <= 1.1.3 - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Criteria Name | Code Supply Co. | Absolute Reviews | Medium | 6.4 | 2024-09-27 05:31:02 | Deep Dive |
| CVE-2024-8910 | HT Mega – Absolute Addons For Elementor <= 2.6.5 - Authenticated (Contributor+) Sensitive Information Exposure via template_id | devitemsllc | HT Mega Addons for Elementor – Elementor Widgets & Template Builder | Medium | 4.3 | 2024-09-25 06:49:00 | Deep Dive |
| CVE-2024-40873 | XSS in Secure Access administrative console | Absolute Security | Secure Access | Medium | 4.5 | 2024-07-25 17:19:29 | Deep Dive |
| CVE-2024-40872 | Elevation of privilege in Absolute Secure Access clients and servers | Absolute Security | Secure Access | High | 8.4 | 2024-07-25 17:00:38 | Deep Dive |
| CVE-2024-5215 | HT Mega – Absolute Addons For Elementor <= 2.5.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets | devitemsllc | HT Mega Addons for Elementor – Elementor Widgets & Template Builder | Medium | 6.4 | 2024-06-26 06:56:04 | Deep Dive |
| CVE-2024-5173 | HT Mega – Absolute Addons For Elementor <= 2.5.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via Video Player Widget Settings | devitemsllc | HT Mega Addons for Elementor – Elementor Widgets & Template Builder | Medium | 6.4 | 2024-06-26 02:07:56 | Deep Dive |