NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-63058 Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Hiroaki Miyashita Custom Field Template custom-field-templ... 2025-12-09 4.4 LOCAL MEDIUM NVD
CVE-2025-63057 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Roxnor Wp Ultimate Review wp-ultimate-review all... 2025-12-09 8.2 NETWORK HIGH NVD
CVE-2025-63056 Missing Authorization vulnerability in bestwebsoft Contact Form by BestWebSoft contact-form-plugin allows Exploiting Incorrectly Configured Access Con... 2025-12-09 4.3 NETWORK MEDIUM NVD
CVE-2025-63055 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Liton Arefin Master Addons for Elementor master-... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63054 Missing Authorization vulnerability in ExpressTech Systems Quiz And Survey Master quiz-master-next allows Exploiting Incorrectly Configured Access Con... 2025-12-09 5.3 NETWORK MEDIUM NVD
CVE-2025-63052 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in GalleryCreator SimpLy Gallery simply-gallery-blo... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63050 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sizam REHub Framework rehub-framework allows Sto... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63049 Missing Authorization vulnerability in CridioStudio ListingPro Lead Form listingpro-lead-form allows Accessing Functionality Not Properly Constrained ... 2025-12-09 5.3 NETWORK MEDIUM NVD
CVE-2025-63048 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CridioStudio ListingPro Lead Form listingpro-lea... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63047 Missing Authorization vulnerability in CridioStudio ListingPro listingpro allows Exploiting Incorrectly Configured Access Control Security Levels.This... 2025-12-09 5.3 NETWORK MEDIUM NVD
CVE-2025-63046 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CridioStudio ListingPro listingpro-plugin allows... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63045 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in averta Master Slider Pro masterslider allows DOM... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63044 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Xpro Xpro Elementor Addons xpro-elementor-addons... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63042 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Themeum Tutor LMS Elementor Addons tutor-lms-ele... 2025-12-09 6.5 NETWORK MEDIUM NVD
CVE-2025-63037 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in DFDevelopment Ronneby Theme Core ronneby-core al... 2025-12-09 6.5 NETWORK MEDIUM NVD