General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-28946 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability i… | High (8.1) | 2025-06-27 | General-Purpose |
| CVE-2025-27361 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in thhake Photo Expr… | High (7.1) | 2025-06-27 | General-Purpose |
| CVE-2025-25173 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FasterThemes Fast… | High (7.1) | 2025-06-27 | General-Purpose |
| CVE-2025-25171 | Authentication Bypass Using an Alternate Path or Channel vulnerability in ThemesGrove WP SmartPay allows Authentication… | High (8.8) | 2025-06-27 | General-Purpose |
| CVE-2025-24774 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in mojoomla WPCRM - … | High (7.1) | 2025-06-27 | General-Purpose |