Filtered by vendor Wpbeaverbuilder
Subscribe
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2024-43926 | 1 Wpbeaverbuilder | 1 Beaver Builder | 2024-09-03 | N/A | 6.1 MEDIUM |
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Beaver Builder Team Beaver Builder allows Reflected XSS.This issue affects Beaver Builder: from n/a through 2.8.3.2. | |||||
CVE-2022-3380 | 1 Wpbeaverbuilder | 1 Customizer Export\/import | 2024-02-04 | N/A | 7.2 HIGH |
The Customizer Export/Import WordPress plugin before 0.9.5 unserializes the content of an imported file, which could lead to PHP object injection issues when an admin imports (intentionally or not) a malicious file and a suitable gadget chain is present on the blog. |