| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2025-28896 | WordPress AS English Admin plugin <= 1.0.0 - Open Redirection vulnerability | Akshar Soft Solutions | AS English Admin | Medium | 4.7 | 2025-03-11 21:00:50 | Deep Dive |
| CVE-2025-1309 | UiPress lite | Effortless custom dashboards, admin themes and pages <= 3.5.04 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Options Update | admintwentytwenty | UiPress lite | Effortless custom dashboards, admin themes and pages | High | 8.8 | 2025-03-07 07:22:24 | Deep Dive |
| CVE-2024-13685 | Admin and Site Enhancements (ASE) < 7.6.10 - Limit Login Attempt Bypass via IP Spoofing | Unknown | Admin and Site Enhancements (ASE) | 中危 | - | 2025-03-04 06:00:04 | Deep Dive |
| CVE-2025-26925 | WordPress Admin Menu Manager plugin <= 1.0.3 - Cross Site Request Forgery (CSRF) vulnerability | Required | Admin Menu Manager | Medium | 4.3 | 2025-02-26 13:21:04 | Deep Dive |
| CVE-2025-26987 | WordPress Frontend Admin by DynamiApps plugin <= 3.25.17 - Reflected Cross Site Scripting (XSS) vulnerability | Shabti Kaplan | Frontend Admin by DynamiApps | High | 7.1 | 2025-02-25 14:16:35 | Deep Dive |
| CVE-2024-13379 | C9 Admin Dashboard <= 1.3.5 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload | ttoomey | C9 Admin Dashboard | Medium | 6.4 | 2025-02-21 03:21:21 | Deep Dive |
| CVE-2024-13390 | ADFO – Custom data in admin dashboard <= 1.9.1 - Authenticated (Contributor+) Stored Cross-Site Scripting | giuliopanda | ADFO – Custom data in admin dashboard | Medium | 6.4 | 2025-02-19 07:32:07 | Deep Dive |
| CVE-2025-23905 | WordPress Admin Options Pages plugin <= 0.9.7 - Reflected Cross Site Scripting (XSS) vulnerability | Johannes van Poelgeest | Admin Options Pages | High | 7.1 | 2025-02-14 12:45:34 | Deep Dive |
| CVE-2025-24980 | Pimcore Admin Classic Bundle allows user enumeration | pimcore | admin-ui-classic-bundle | 中危 | - | 2025-02-07 19:56:10 | Deep Dive |
| CVE-2025-25135 | WordPress Custom Links On Admin Dashboard Toolbar plugin <= 3.3 - CSRF to Stored XSS vulnerability | Victor Barkalov | Custom Links On Admin Dashboard Toolbar | High | 7.1 | 2025-02-07 10:11:52 | Deep Dive |
| CVE-2025-25075 | WordPress Show notice or message on admin area plugin <= 2.0 - CSRF to Stored XSS vulnerability | Venugopal | Show notice or message on admin area | High | 7.1 | 2025-02-07 10:11:31 | Deep Dive |
| CVE-2025-25072 | WordPress WP Admin Custom Page plugin <= 1.5.0 - CSRF to Stored XSS vulnerability | thunderbax | WP Admin Custom Page | High | 7.1 | 2025-02-07 10:11:26 | Deep Dive |
| CVE-2025-24648 | WordPress Admin and Site Enhancements (ASE) Plugin <= 7.6.2.1 - Privilege Escalation vulnerability | Bowo | Admin and Site Enhancements (ASE) | High | 7.5 | 2025-02-04 14:21:15 | Deep Dive |
| CVE-2024-43333 | WordPress Admin and Site Enhancements (ASE) Pro Plugin <= 7.6.2.1 - Privilege Escalation vulnerability | NotFound | Admin and Site Enhancements (ASE) Pro | High | 7.5 | 2025-02-03 14:23:50 | Deep Dive |
| CVE-2025-24653 | WordPress Admin and Site Enhancements (ASE) Pro Plugin <= 7.6.1.1 - Broken Access Control vulnerability | NotFound | Admin and Site Enhancements (ASE) Pro | Medium | 4.3 | 2025-01-27 14:22:17 | Deep Dive |
| CVE-2025-0709 | Dcat-Admin Roles Page roles cross site scripting | - | Dcat-Admin | Low | 2.4 | 2025-01-24 20:31:06 | Deep Dive |
| CVE-2025-24649 | WordPress Admin and Site Enhancements (ASE) Plugin <= 7.6.2 - Broken Access Control vulnerability | Bowo | Admin and Site Enhancements (ASE) | Medium | 4.3 | 2025-01-24 17:24:44 | Deep Dive |
| CVE-2025-23686 | WordPress Admin Menu Organizer plugin <= 1.0.1 - Reflected Cross Site Scripting (XSS) vulnerability | phpdevca | Admin Menu Organizer | High | 7.1 | 2025-01-22 14:29:19 | Deep Dive |
| CVE-2025-23832 | WordPress Admin Cleanup plugin <= 1.0.2 - CSRF to Stored XSS vulnerability | Matt Gibbs | Admin Cleanup | High | 7.1 | 2025-01-16 20:07:14 | Deep Dive |
| CVE-2025-23801 | WordPress Style Admin Plugin <= 1.4.3 - CSRF to Stored XSS vulnerability | FuzzGuard | Style Admin | High | 7.1 | 2025-01-16 20:07:07 | Deep Dive |