| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-14288 | Gallery Blocks with Lightbox <= 3.3.0 - Missing Authorization to Authenticated (Contributor+) Plugin Settings Modification | gallerycreator | Mixed Media Gallery Blocks | Medium | 4.3 | 2025-12-13 04:31:26 | Deep Dive |
| CVE-2025-13891 | Image Gallery – Photo Grid & Video Gallery (Modula) <= 2.13.3 - Missing Authorization to Arbitrary Directory Listing | wpchill | Modula Image Gallery – Photo Grid & Video Gallery | Medium | 6.5 | 2025-12-12 07:20:35 | Deep Dive |
| CVE-2025-11467 | RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator <= 5.1.1 - Unauthenticated Blind Server-Side Request Forgery | themeisle | RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator | Medium | 5.8 | 2025-12-11 01:55:32 | Deep Dive |
| CVE-2025-14390 | Video Merchant <= 5.0.4 - Cross-Site Request Forgery to Arbitrary File Upload | videomerchant | Video Merchant | High | 8.8 | 2025-12-10 09:23:56 | Deep Dive |
| CVE-2025-62093 | WordPress Image&Video FullScreen Background plugin <= 1.6.7 - SQL Injection vulnerability | LambertGroup | Image&Video FullScreen Background | High | 8.5 | 2025-12-09 14:52:20 | Deep Dive |
| CVE-2025-12966 | All-in-One Video Gallery 4.5.4 - 4.5.7 – Authenticated (Author+) Arbitrary File Upload via Import ZIP | plugins360 | All-in-One Video Gallery | High | 8.8 | 2025-12-06 09:25:58 | Deep Dive |
| CVE-2025-13646 | Modula 2.13.1 - 2.13.2 - Authenticated (Author+) Arbitrary File Upload via Race Condition | wpchill | Image Gallery – Photo Grid & Video Gallery | High | 7.5 | 2025-12-03 02:25:30 | Deep Dive |
| CVE-2025-13645 | Modula 2.13.1 - 2.13.2 - Authenticated (Author+) Arbitrary File Deletion | wpchill | Image Gallery – Photo Grid & Video Gallery | High | 7.2 | 2025-12-03 02:25:29 | Deep Dive |
| CVE-2025-13658 | Industrial Video & Control Longwatch has a Code Injection vulnerability | Industrial Video & Control | Longwatch | - | - | 2025-12-02 19:35:59 | Deep Dive |
| CVE-2025-13876 | Rareprob HD Video Player All Formats App com.rocks.music.videoplayer path traversal | Rareprob | HD Video Player All Formats App | Medium | 5.3 | 2025-12-02 15:02:08 | Deep Dive |
| CVE-2025-64983 | SwitchBot Smart Video Doorbell 安全漏洞 | SwitchBot | Smart Video Doorbell | - | - | 2025-11-26 04:32:56 | Deep Dive |
| CVE-2025-12494 | Image Gallery – Photo Grid & Video Gallery <= 2.12.28 - Improper Authorization to Authenticated (Author+) Arbitrary Image File Move | wpchill | Modula Image Gallery – Photo Grid & Video Gallery | Medium | 4.3 | 2025-11-15 05:45:34 | Deep Dive |
| CVE-2025-62910 | WordPress Video Gallery by Huzzaz plugin <= 10.5 - Cross Site Scripting (XSS) vulnerability | deshine | Video Gallery by Huzzaz | Medium | 6.5 | 2025-10-27 01:33:54 | Deep Dive |
| CVE-2025-11128 | Feedzy RSS Feeds Lite <= 5.1.0 - Authenticated (Subscriber+) Server-Side Request Forgery | themeisle | RSS Aggregator by Feedzy – Feed to Post, Autoblogging, News & YouTube Video Feeds Aggregator | Medium | 5.0 | 2025-10-23 12:32:33 | Deep Dive |
| CVE-2025-60132 | WordPress Video Blogster Lite Plugin <= 1.2 - Cross Site Request Forgery (CSRF) Vulnerability | johnh10 | Video Blogster Lite | High | 7.1 | 2025-10-22 14:32:41 | Deep Dive |
| CVE-2024-13991 | Huijietong Cloud Video Platform fileDownload Arbitrary File Read | Huijietong | Cloud Video Platform | - | - | 2025-10-15 01:21:41 | Deep Dive |
| CVE-2024-56804 | Video Station | QNAP Systems Inc. | Video Station | 高危 | - | 2025-10-03 18:08:19 | Deep Dive |
| CVE-2025-9372 | Ultimate Multi Design Video Carousel <= 1.4 - Authenticated (Editor+) Stored Cross-Site Scripting | gbsdeveloper | Ultimate Multi Design Video Carousel | Medium | 5.5 | 2025-10-03 11:17:18 | Deep Dive |
| CVE-2025-56675 | EKEN video doorbell T6 安全漏洞 | EKEN | video doorbell T6 | Low | 3.5 | 2025-09-30 00:00:00 | Deep Dive |
| CVE-2025-60137 | WordPress Post Featured Video Plugin <= 1.7 - Cross Site Request Forgery (CSRF) Vulnerability | Galaxy Weblinks | Post Featured Video | Medium | 4.3 | 2025-09-26 08:31:44 | Deep Dive |