Tagged: Cybersecurity Alert

CVE-2025-60116

Missing Authorization vulnerability in ThemeGoods Grand Conference Theme Custom Post Type allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Grand Conference Theme Custom Post Type: from n/a through 2.6.3. More information...

CVE-2025-60109

Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in LambertGroup LambertGroup – AllInOne – Content Slider allows Blind SQL Injection. This issue affects LambertGroup – AllInOne – Content Slider:...

CVE-2025-60110

Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in LambertGroup AllInOne – Banner Rotator allows SQL Injection. This issue affects AllInOne – Banner Rotator: from n/a through 3.8. More...

CVE-2025-60112

Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in Syed Balkhi aThemes Addons for Elementor allows Stored XSS. This issue affects aThemes Addons for Elementor: from n/a through 1.1.3. More information...