
CVE-2025-31062 – WordPress Wishlist <= 2.1.0 - Sensitive Data Exposure Vulnerability
https://notcve.org/view.php?id=CVE-2025-31062
16 May 2025 — Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in redqteam Wishlist allows Retrieve Embedded Sensitive Data. ... The Wishlist plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.1.0. • https://patchstack.com/database/wordpress/plugin/wishlist/vulnerability/wordpress-wishlist-2-1-0-sensitive-data-exposure-vulnerability? • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere •

CVE-2025-32299 – WordPress QuickCal <= 1.0.15 - Sensitive Data Exposure Vulnerability
https://notcve.org/view.php?id=CVE-2025-32299
16 May 2025 — Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Themovation QuickCal allows Retrieve Embedded Sensitive Data. ... The QuickCal plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.0.15. • https://patchstack.com/database/wordpress/plugin/quickcal/vulnerability/wordpress-quickcal-1-0-15-sensitive-data-exposure-vulnerability? • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-497: Exposure of Sensitive System Information to an Unauthorized Control Sphere •

CVE-2025-39498 – WordPress Spotlight - Social Media Feeds (Premium) plugin <= 1.7.1 - Sensitive Data Exposure vulnerability
https://notcve.org/view.php?id=CVE-2025-39498
16 May 2025 — Insertion of Sensitive Information Into Sent Data vulnerability in Spotlight Spotlight - Social Media Feeds (Premium) allows Retrieve Embedded Sensitive Data.This issue affects Spotlight - Social Media Feeds (Premium): from n/a through 1.7.1. The spotlight-social-photo-feeds-premium plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.7.1. • https://patchstack.com/database/wordpress/plugin/spotlight-social-photo-feeds-premium/vulnerability/wordpress-spotlight-social-media-feeds-premium-plugin-1-7-1-sensitive-data-exposure-vulnerability? • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-201: Insertion of Sensitive Information Into Sent Data •

CVE-2025-1138 – IBM Information Server information disclosure
https://notcve.org/view.php?id=CVE-2025-1138
15 May 2025 — IBM InfoSphere Information Server 11.7 could disclose sensitive information to an authenticated user that could aid in further attacks against the system through a directory listing. • https://www.ibm.com/support/pages/node/7230295 • CWE-548: Exposure of Information Through Directory Listing •

CVE-2025-30421 – Stack-based Buffer Overflow in DrObjectStorage::XML_Serialize() in NI Circuit Design Suite
https://notcve.org/view.php?id=CVE-2025-30421
15 May 2025 — This vulnerability may result in information disclosure or arbitrary code execution. • https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/memory-corruption-vulnerabilities-in-ni-circuit-design-suite.html • CWE-121: Stack-based Buffer Overflow •

CVE-2025-30420 – Out of Bounds Read in Bitmap::InternalDraw() in NI Circuit Design Suite
https://notcve.org/view.php?id=CVE-2025-30420
15 May 2025 — This vulnerability may result in information disclosure or arbitrary code execution. • https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/memory-corruption-vulnerabilities-in-ni-circuit-design-suite.html • CWE-125: Out-of-bounds Read •

CVE-2025-30419 – Out of Bounds Read in GetSymbolBorderRectSize() in NI Circuit Design Suite
https://notcve.org/view.php?id=CVE-2025-30419
15 May 2025 — This vulnerability may result in information disclosure or arbitrary code execution. • https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/memory-corruption-vulnerabilities-in-ni-circuit-design-suite.html • CWE-125: Out-of-bounds Read •

CVE-2025-30418 – Out of Bounds Write in CheckPins() in NI Circuit Design Suite
https://notcve.org/view.php?id=CVE-2025-30418
15 May 2025 — This vulnerability may result in information disclosure or arbitrary code execution. • https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/memory-corruption-vulnerabilities-in-ni-circuit-design-suite.html • CWE-787: Out-of-bounds Write •

CVE-2025-30417 – Out of Bounds Write in Library!DecodeBase64() in NI Circuit Design Suite
https://notcve.org/view.php?id=CVE-2025-30417
15 May 2025 — This vulnerability may result in information disclosure or arbitrary code execution. ... This vulnerability may result in information disclosure or arbitrary code execution. • https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/memory-corruption-vulnerabilities-in-ni-circuit-design-suite.html • CWE-787: Out-of-bounds Write •

CVE-2025-47580 – WordPress Front End Users plugin <= 3.2.32 - Sensitive Data Exposure vulnerability
https://notcve.org/view.php?id=CVE-2025-47580
15 May 2025 — The Front End Users plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.2.32. • https://patchstack.com/database/wordpress/plugin/front-end-only-users/vulnerability/wordpress-front-end-users-plugin-3-2-32-sensitive-data-exposure-vulnerability? • CWE-862: Missing Authorization •