| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-11823 | ShopLentor – WooCommerce Builder for Elementor & Gutenberg +21 Modules – All in One Solution <= 3.2.4 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode | devitemsllc | ShopLentor – All-in-One WooCommerce Growth & Store Enhancement Plugin | Medium | 6.4 | 2025-10-25 04:22:45 | Deep Dive |
| CVE-2025-62048 | WordPress SmartCrawl plugin <= 3.14.3 - Broken Access Control vulnerability | WPMU DEV - Your All-in-One WordPress Platform | SmartCrawl | Medium | 5.4 | 2025-10-22 14:32:52 | Deep Dive |
| CVE-2025-62052 | WordPress One Page Express Companion plugin <= 1.6.43 - Broken Access Control vulnerability | Horea Radu | One Page Express Companion | Medium | 4.3 | 2025-10-22 14:32:52 | Deep Dive |
| CVE-2025-6833 | All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier <= 2.0 - Insecure Direct Object Reference to Authenticated (Subscriber+) Arbitrary Clocking In/Out | codebangers | All in One Time Clock Lite – Tracking Employee Time Has Never Been Easier | Medium | 4.3 | 2025-10-22 09:24:38 | Deep Dive |
| CVE-2025-8559 | All in One Music Player <= 1.3.1 - Authenticated (Contributor+) Path Traversal via theme Parameter | sanzeeb3 | All in One Music Player | Medium | 6.5 | 2025-09-30 03:35:30 | Deep Dive |
| CVE-2025-10173 | ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution <= 4.8.3 - Insufficient Authorization to Authenticated (Editor+) Settings Update | roxnor | ShopEngine Elementor WooCommerce Builder Addon – All in One WooCommerce Solution | Low | 2.7 | 2025-09-26 03:25:34 | Deep Dive |
| CVE-2025-58649 | WordPress All In One SEO Pack Plugin <= 4.8.7.1 - Sensitive Data Exposure Vulnerability | Syed Balkhi | All In One SEO Pack | Medium | 4.3 | 2025-09-22 18:23:11 | Deep Dive |
| CVE-2025-58650 | WordPress All In One SEO Pack Plugin <= 4.8.7.1 - Broken Access Control Vulnerability | Syed Balkhi | All In One SEO Pack | Medium | 5.4 | 2025-09-22 18:23:10 | Deep Dive |
| CVE-2025-59363 | One Identity OneLogin 安全漏洞 | One Identity | OneLogin | High | 7.7 | 2025-09-14 00:00:00 | Deep Dive |
| CVE-2025-9073 | All in one Minifier <= 3.2 - Unauthenticated SQL Injection | maheshmthorat | All in one Minifier | High | 7.5 | 2025-09-11 07:24:54 | Deep Dive |
| CVE-2025-8422 | Propovoice <= 1.7.6.7 - Unauthenticated Arbitrary File Read | fassionstorage | Propovoice: All-in-One Client Management System | High | 7.5 | 2025-09-11 07:24:52 | Deep Dive |
| CVE-2025-42933 | Insecure Storage of Sensitive Information in SAP Business One (SLD) | SAP_SE | SAP Business One (SLD) | High | 8.8 | 2025-09-09 02:11:26 | Deep Dive |
| CVE-2025-58883 | WordPress Search Cloud One Plugin <= 2.2.5 - Cross Site Scripting (XSS) Vulnerability | Thomas Harris | Search Cloud One | Medium | 5.9 | 2025-09-05 13:45:52 | Deep Dive |
| CVE-2025-58829 | WordPress Ai Auto Tool Content Writing Assistant (Gemini Writer, ChatGPT ) All in One plugin <= 2.3.3 - Server Side Request Forgery (SSRF) vulnerability | aitool | Ai Auto Tool Content Writing Assistant (Gemini Writer, ChatGPT ) All in One | Medium | 4.9 | 2025-09-05 13:45:23 | Deep Dive |
| CVE-2025-8490 | All-in-One WP Migration and Backup <= 7.97 - Authenticated (Administrator+) Stored Cross-Site Scripting via Import | servmask | All-in-One WP Migration and Backup | Medium | 4.4 | 2025-08-26 23:22:41 | Deep Dive |
| CVE-2025-40743 | Siemens多款产品 安全漏洞 | Siemens | SINUMERIK 828D PPU.4 | High | 8.3 | 2025-08-12 11:17:04 | Deep Dive |
| CVE-2025-42951 | Broken Authorization in SAP Business One (SLD) | SAP_SE | SAP Business One (SLD) | High | 8.8 | 2025-08-12 02:08:43 | Deep Dive |
| CVE-2025-25229 | Omnissa Workspace ONE UEM 安全漏洞 | Omnissa | Omnissa Workspace ONE UEM | Medium | 5.4 | 2025-08-11 18:24:18 | Deep Dive |
| CVE-2025-25231 | Omnissa Workspace ONE UEM 安全漏洞 | Omnissa | Omnissa Workspace ONE UEM | High | 7.5 | 2025-08-11 18:12:50 | Deep Dive |
| CVE-2025-54987 | Trend Micro Apex One 安全漏洞 | Trend Micro, Inc. | Trend Micro Apex One | Critical | 9.4 | 2025-08-05 13:00:39 | Deep Dive |