| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-30856 | WordPress Custom Field For WP Job Manager plugin <= 1.4 - Cross Site Request Forgery (CSRF) vulnerability | theme funda | Custom Field For WP Job Manager | Medium | 4.3 | 2025-03-27 10:55:29 | Deep Dive |
| CVE-2025-23952 | WordPress Custom Field List Widget Plugin <= 1.5.1 - Local File Inclusion vulnerability | ntm | custom-field-list-widget | High | 8.1 | 2025-03-26 14:24:17 | Deep Dive |
| CVE-2024-56182 | Siemens SIMATIC 缓冲区错误漏洞 | Siemens | SIMATIC Field PG M5 | High | 8.2 | 2025-03-11 09:48:05 | Deep Dive |
| CVE-2024-56181 | Siemens SIMATIC 缓冲区错误漏洞 | Siemens | SIMATIC Field PG M5 | High | 8.2 | 2025-03-11 09:48:04 | Deep Dive |
| CVE-2025-26768 | WordPress what3words Address Field plugin <= 4.0.15 - CSRF to Stored XSS vulnerability | what3words | what3words Address Field | High | 7.1 | 2025-02-16 22:17:19 | Deep Dive |
| CVE-2025-23500 | WordPress Simple Custom post type custom field plugin <= 1.0.3 - Reflected Cross Site Scripting (XSS) vulnerability | faaiq | Simple Custom post type custom field | High | 7.1 | 2025-01-22 14:29:13 | Deep Dive |
| CVE-2025-22294 | WordPress Custom Field For WP Job Manager plugin <= 1.3 - Reflected Cross Site Scripting (XSS) vulnerability | theme funda | Custom Field For WP Job Manager | High | 7.1 | 2025-01-07 14:57:40 | Deep Dive |
| CVE-2023-49817 | WordPress Flexible Woocommerce Checkout Field Editor plugin <= 2.0.1 - Broken Access Control vulnerability | heolixfy | Flexible Woocommerce Checkout Field Editor | High | 8.2 | 2024-12-09 11:30:12 | Deep Dive |
| CVE-2024-49642 | WordPress Todo Custom Field plugin <= 3.0.4 - Reflected Cross Site Scripting (XSS) vulnerability | rafasashi | Todo Custom Field | High | 7.1 | 2024-10-29 08:50:22 | Deep Dive |
| CVE-2022-4974 | Freemius SDK <= 2.4.2 - Missing Authorization Checks | dashlabsltd | YASR – Yet Another Star Rating Plugin for WordPress | Medium | 6.3 | 2024-10-16 06:43:30 | Deep Dive |
| CVE-2024-21271 | Oracle E-Business Suite 安全漏洞 | Oracle Corporation | Oracle Field Service | High | 8.1 | 2024-10-15 19:52:58 | Deep Dive |
| CVE-2024-8499 | Checkout Field Editor (Checkout Manager) for WooCommerce <= 2.0.3 - Reflected Cross-Site Scripting via render_review_request_notice | themehigh | Checkout Field Editor (Checkout Manager) for WooCommerce | Medium | 4.7 | 2024-10-04 12:46:53 | Deep Dive |
| CVE-2024-44062 | WordPress Custom Field Template plugin <= 2.6.5 - Cross Site Scripting (XSS) vulnerability | Hiroaki Miyashita | Custom Field Template | Medium | 6.5 | 2024-09-15 07:58:39 | Deep Dive |
| CVE-2024-6596 | Endress+Hauser: Multiple products are vulnerable to code injection | Endress+Hauser | Echo Curve Viewer | Critical | 9.8 | 2024-09-10 08:01:26 | Deep Dive |
| CVE-2024-43278 | WordPress Meta Field Block plugin <= 1.2.13 - Cross Site Scripting (XSS) vulnerability | Phi Phan | Meta Field Block | Medium | 6.5 | 2024-08-18 21:17:32 | Deep Dive |
| CVE-2023-7049 | Custom Field For WP Job Manager <= 1.2 - Insecure Direct Object Reference to Sensitive Information Exposure via Shortcode | gravitymaster97 | Custom Field For WP Job Manager | Medium | 4.3 | 2024-08-16 01:59:59 | Deep Dive |
| CVE-2024-38182 | Microsoft Dynamics 365 Elevation of Privilege Vulnerability | Microsoft | Dynamics 365 Field Service (on-premises) v7 series | Critical | 9.0 | 2024-07-31 23:00:11 | Deep Dive |
| CVE-2024-3562 | Custom Field Suite <= 2.6.7 - Authenticated (Contributor+) PHP Code Injection via Loop Custom Field | mgibbs189 | Custom Field Suite | High | 8.8 | 2024-06-20 02:08:28 | Deep Dive |
| CVE-2024-3561 | Custom Field Suite <= 2.6.7 - Authenticated (Contributor+) SQL Injection via Term Custom Field | mgibbs189 | Custom Field Suite | High | 8.8 | 2024-06-20 02:08:27 | Deep Dive |
| CVE-2024-3558 | Custom Field Suite <= 2.6.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via cfs[post_title] | mgibbs189 | Custom Field Suite | Medium | 6.4 | 2024-06-20 02:08:26 | Deep Dive |