Critical vulnerabilities, curated daily for security professionals
đ¯ SSCV Profile
See how vulnerabilities affect your specific environment
CRS uses the System Security Context Vector (SSCV) Framework v1.0 to adjust CVSS scores based on your system's exposure level, network position, and business criticality. Learn more about SSCV Framework
Risk scores will be adjusted based on your selected environment
đ
Archived Security Brief
This curated brief highlights 3 critical vulnerabilities and 0 high-priority updates requiring immediate attention.
đĄ Tip: Swipe CVE cards left to â star, right to â remove
Section Navigation
đ¨
Critical Vulnerabilities
CVE-2025-8901
9.8
BackupMultiple Products
WordPress Bears Backup plugin is vulnerable to remote code execution in all versions up to 2.0.0 due to improper input validation in the backup restore functionality.
CVSS Base9.8
â
CRSSelect profile
CVE-2025-9012
9.3
CmsjunkieWp-Businessdirectory
SQL injection vulnerability in CMSJunkie WP-BusinessDirectory plugin allows blind SQL injection attacks through search parameters.
CVSS Base9.3
â
CRSSelect profile
CVE-2025-7883
9.8đ
EluktronicsControl
A critical command injection vulnerability in Eluktronics Control Center allows authenticated attackers to execute arbitrary commands with elevated privileges.