Joomla! Core is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently reset users password due to insufficient randomness. Joomla! Core versions 2.5.x ranging from 2.5.0 and up to and including 2.5.2 are vulnerable.
Update to Joomla! Core version 2.5.3 or latest
WordPress Plugin NotificationX-Best FOMO, Social Proof, WooCommerce Sales Popup & Notification Bar With Elementor SQL Injection (2.3.11)
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery Multiple Vulnerabilities (1.2.9)
WordPress 4.0.x Multiple Vulnerabilities (4.0 - 4.0.18)
WordPress Plugin WordPress Photo Gallery by Gallery Bank Unspecified Vulnerability (3.1.26)
WordPress Plugin Leaflet 'id' Parameter Cross-Site Scripting (0.0.1)