Aggregator
CVE-2025-30948 | Giraphix Creative Layouts for Elementor Plugin up to 1.11 on WordPress cross-site request forgery (EUVD-2025-17215)
CVE-2025-30940 | Melipayamak Plugin up to 2.2.12 on WordPress cross site scripting
CVE-2025-30942 | OTWthemes Post Custom Templates Lite Plugin up to 1.14 on WordPress cross site scripting (EUVD-2025-17212)
CVE-2025-30930 | Unreal Themes ACF Yandex Maps Field Plugin up to 1.1 on WordPress cross site scripting (EUVD-2025-17202)
CVE-2025-30941 | Marvie Pons Pinterest Verify Meta Tag Plugin up to 1.3 on WordPress cross site scripting
CVE-2025-30937 | stefanledin Responsify WP Plugin up to 1.9.11 on WordPress cross site scripting
CVE-2025-30931 | Shamil Shafeev Подсказки Plugin up to 1.0.6 on WordPress cross site scripting
CVE-2025-30928 | vicchi WP Biographia Plugin up to 4.0.0 on WordPress cross site scripting
CVE-2025-30927 | Wordapp Plugin up to 1.7.0 on WordPress authorization
CVE-2025-30950 | WP Wham All Currencies for WooCommerce Plugin up to 2.4.4 on WordPress cross site scripting
CVE-2025-28984 | storepro Subscription Renewal Reminders for WooCommerce Plugin cross-site request forgery
CVE-2025-30638 | PowieT Powies Uptime Robot Plugin up to 0.9.7 on WordPress cross site scripting
CVE-2025-30624 | WordLift Plugin up to 3.54.4 on WordPress authorization
CVE-2025-29003 | mva7 Holiday Calendar Plugin up to 1.18.2.1 on WordPress cross site scripting
Lynx
You must login to view this content
BCS 2025|百度副总裁陈洋:智能体在安全领域的应用实践
Chrome Extensions Vulnerability Exposes API Keys, Secrets, and Tokens
A significant security vulnerability affecting millions of Chrome extension users has been discovered, revealing widespread exposure of sensitive API keys, secrets, and authentication tokens directly embedded in extension code. This critical flaw stems from developers hardcoding credentials into their JavaScript files, making these secrets accessible to anyone who inspects the extension packages. The vulnerability affects […]
The post Chrome Extensions Vulnerability Exposes API Keys, Secrets, and Tokens appeared first on Cyber Security News.
Учёные создали "невозможный" чип: лазер + радар + 6G в одном кристалле
Weekly Threat Landscape Digest – Week 23
This week’s threat landscape highlights the evolving sophistication of threat actors, who are increasingly targeting newly disclosed and unpatched vulnerabilities. […]
The post Weekly Threat Landscape Digest – Week 23 appeared first on HawkEye.