Recent news in security

  

CVE-2025-5125 | Custom Post Carousels with Owl Plugin up to 1.4.11 on WordPress cross site scripting

A vulnerability was found in Custom Post Carousels with Owl Plugin up to 1.4.11 on WordPress. It has been rated

  

CVE-2025-6393 | TOTOLINK A702R/A3002R/A3002RU/EX1200T HTTP POST Request /boafrm/formIPv6Addr submit-url buffer overflow

A vulnerability was found in TOTOLINK A702R, A3002R, A3002RU and EX1200T 3.0.0-B20230809.1615/4.0.0-B20230531.1404/4.0.0-B20230721.1521/4.1.2cu.5232_B20210713. It has been classified as critical. Affected is

  

CVE-2025-6394 | code-projects Simple Online Hotel Reservation System 1.0 /add_reserve.php firstname sql injection

A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. Affected by

Vendor

CERTs

Vulnerabilities