| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-32654 | WordPress Motors plugin <= 1.4.71 - Local File Inclusion vulnerability | Stylemix | Motors | High | 8.1 | 2025-04-11 08:43:02 | Deep Dive |
| CVE-2025-3437 | Motors – Car Dealership & Classified Listings Plugin <= 1.4.66 - Missing Authorization to Authenticated (Subscriber+) Wizard Set-up | stylemix | Motors – Car Dealership & Classified Listings Plugin | Medium | 4.3 | 2025-04-08 09:21:20 | Deep Dive |
| CVE-2025-2807 | Motors – Car Dealership & Classified Listings Plugin <= 1.4.64 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Plugin Installation | stylemix | Motors – Car Dealership & Classified Listings Plugin | High | 8.8 | 2025-04-08 09:21:19 | Deep Dive |
| CVE-2025-2808 | Motors – Car Dealership & Classified Listings Plugin <= 1.4.63 - Authenticated (Subscriber+) Stored Cross-Site Scripting | stylemix | Motors – Car Dealership & Classified Listings Plugin | Medium | 5.4 | 2025-04-08 09:21:19 | Deep Dive |
| CVE-2025-32237 | WordPress MasterStudy LMS plugin <= 3.5.28 - Broken Access Control vulnerability | Stylemix | MasterStudy LMS | Medium | 4.3 | 2025-04-04 15:59:21 | Deep Dive |
| CVE-2025-32170 | WordPress Motors plugin <= 1.4.71 - Cross Site Scripting (XSS) vulnerability | Stylemix | Motors | Medium | 6.5 | 2025-04-04 15:58:51 | Deep Dive |
| CVE-2025-32142 | WordPress Motors plugin <= 1.4.71 - Local File Inclusion vulnerability | Stylemix | Motors | High | 8.8 | 2025-04-04 15:58:34 | Deep Dive |
| CVE-2025-32141 | WordPress MasterStudy LMS plugin <= 3.5.28 - Local File Inclusion vulnerability | Stylemix | MasterStudy LMS | High | 8.8 | 2025-04-04 15:58:33 | Deep Dive |
| CVE-2025-32122 | WordPress uListing plugin <= 2.2.0 - SQL Injection vulnerability | Stylemix | uListing | High | 7.6 | 2025-04-04 15:58:23 | Deep Dive |
| CVE-2025-31881 | WordPress Pearl plugin <= 1.3.9 - Broken Access Control vulnerability | Stylemix | Pearl | Medium | 5.4 | 2025-04-01 14:52:16 | Deep Dive |
| CVE-2025-31880 | WordPress Pearl plugin <= 1.3.9 - Cross Site Request Forgery (CSRF) vulnerability | Stylemix | Pearl | Medium | 4.3 | 2025-04-01 14:52:16 | Deep Dive |
| CVE-2025-31414 | WordPress Cost Calculator Builder plugin <= 3.2.65 - Cross Site Scripting (XSS) vulnerability | Stylemix | Cost Calculator Builder | Medium | 6.5 | 2025-03-31 06:07:12 | Deep Dive |
| CVE-2024-13737 | Motors – Car Dealer, Classifieds & Listing <= 1.4.57 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Deletion and Listing Template Creation | stylemix | Motors – Car Dealership & Classified Listings Plugin | Medium | 4.3 | 2025-03-22 02:22:10 | Deep Dive |
| CVE-2025-1653 | Directory Listings WordPress plugin – uListing <= 2.2.0 - Authenticated (Subscriber+) Privilege Escalation | stylemix | Directory Listings WordPress plugin – uListing | High | 8.8 | 2025-03-15 02:22:42 | Deep Dive |
| CVE-2025-1657 | Directory Listings WordPress plugin – uListing <= 2.2.0 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Meta Update and PHP Object Injection | stylemix | Directory Listings WordPress plugin – uListing | High | 8.8 | 2025-03-15 02:22:42 | Deep Dive |
| CVE-2025-25150 | WordPress uListing plugin <= 2.1.6 - SQL Injection vulnerability | Stylemix | uListing | Critical | 9.3 | 2025-03-03 13:30:26 | Deep Dive |
| CVE-2025-25151 | WordPress uListing Plugin <= 2.1.6 - SQL Injection vulnerability | Stylemix | uListing | High | 8.5 | 2025-02-07 10:11:56 | Deep Dive |
| CVE-2024-10970 | Motors – Car Dealer, Classifieds & Listing <= 1.4.43 - Authenticated (Subscriber+) Arbitrary Shortcode Execution via Custom Title | stylemix | Motors – Car Dealership & Classified Listings Plugin | Medium | 5.4 | 2025-01-16 01:49:04 | Deep Dive |
| CVE-2024-12206 | Wordpress Header Builder Plugin <= 1.3.8 - Cross-Site Request Forgery to Header Deletion | stylemix | Pearl – Header Builder | Medium | 4.3 | 2025-01-09 11:10:57 | Deep Dive |
| CVE-2024-37093 | WordPress MasterStudy LMS plugin <= 3.2.1 - Cross Site Request Forgery (CSRF) vulnerability | Stylemix | MasterStudy LMS | Medium | 4.3 | 2025-01-02 12:00:40 | Deep Dive |