CVE-2025-28103

CVSS v3 Score
6.4
Medium

Vulnerability Description

Incorrect access control in laskBlog v2.6.1 allows attackers to arbitrarily delete user accounts via a crafted request.

CVSS:6.4(Medium)

In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.

CVSS:6.4(Medium)

In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.

CVSS:6.4(Medium)

In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.

CVSS:6.4(Medium)

In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.

CVSS:6.4(Medium)

In wlan driver, there is a possible missing permission check. This could lead to local information disclosure.

CVSS:6.4(Medium)

The Elfsight Telegram Chat CC plugin for WordPress is vulnerable to unauthorized modification of data to a missing capability check on the 'updatePreferences' function in all versions up to, and inclu...