Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
vulnerabilities and exploits
(subscribe to this query)
810
VMScore
CVE-2025-28933
Cross-Site Request Forgery (CSRF) vulnerability in maxfoundry MaxA/B allows Stored XSS. This issue affects MaxA/B: from n/a up to and including 2.2.2.
Maxfoundry Maxa/b
810
VMScore
CVE-2025-28931
Cross-Site Request Forgery (CSRF) vulnerability in DevriX Hashtags allows Stored XSS. This issue affects Hashtags: from n/a up to and including 0.3.2.
Devrix Hashtags
690
VMScore
CVE-2025-28937
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in lavacode Lava Ajax Search allows Stored XSS. This issue affects Lava Ajax Search: from n/a up to and including 1.1.9.
Lavacode Lava Ajax Search
530
VMScore
CVE-2025-28941
Cross-Site Request Forgery (CSRF) vulnerability in ohtan Spam Byebye allows Cross Site Request Forgery. This issue affects Spam Byebye: from n/a up to and including 2.2.4.
Ohtan Spam Byebye
530
VMScore
CVE-2025-28940
Cross-Site Request Forgery (CSRF) vulnerability in arkapravamajumder Back To Top allows Cross Site Request Forgery. This issue affects Back To Top: from n/a up to and including 2.0.
Arkapravamajumder Back To Top
750
VMScore
CVE-2025-28929
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vivek Marakana Tabbed Login Widget allows Stored XSS. This issue affects Tabbed Login Widget: from n/a up to and including 1.1.2.
Vivek Marakana Tabbed Login Widget
530
VMScore
CVE-2025-28927
Cross-Site Request Forgery (CSRF) vulnerability in A. Chappard Display Template Name allows Cross Site Request Forgery. This issue affects Display Template Name: from n/a up to and including 1.7.1.
A. Chappard Display Template Name
690
VMScore
CVE-2025-28936
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in sakurapixel Lunar allows Stored XSS. This issue affects Lunar: from n/a up to and including 1.3.0.
Sakurapixel Lunar
750
VMScore
CVE-2025-28930
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Rodolphe MOULIN List Mixcloud allows Stored XSS. This issue affects List Mixcloud: from n/a up to and including 1.4.
Rodolphe Moulin List Mixcloud
690
VMScore
CVE-2025-28926
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in popeating Post Read Time allows Stored XSS. This issue affects Post Read Time: from n/a up to and including 1.2.6.
Popeating Post Read Time
Preferred Score:
VMScore
CVSSv2
CVSSv3
CVSSv4
EPSS
VMScore
Recommendations:
CVE-2025-2538
CVE-2025-24813
CVE-2024-57440
CVE-2024-48591
kube-apiserver
CVE-2025-20014
universal traffic recorder app
CVE-2025-2557
redis
code-projects
spoof
bypass
local
Home
/
Search Results
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »