bplugins CVE Vulnerabilities & CVE List (22)

Products (CPE): — CVEs: 22

bplugins vulnerability overview

Aggregates CVE and security vulnerability intelligence across all bplugins-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk sql injection and vendor risk path handling and related problems; some flaws may lead to vendor impact session compromise, affecting vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 2122 of 22 CVEs
«« First « Prev Page 2 / 2 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2021-24413 The Easy Twitter Feed WordPress plugin before 1.2 does not sanitise or validate the parameters from its shortcode, allowing users with a role as low as contributor to set Cross-Site Scripting payload in them which will be triggered in the page/s with the embed malicious shortcode [email protected] 5.4 0.17% 2021-10-18 2024-11-21
CVE-2021-24412 The Html5 Audio Player – Audio Player for WordPress plugin before 2.1.3 does not sanitise or validate the parameters from its shortcode, allowing users with a role as low as contributor to set Cross-Site Scripting payload in them which will be triggered in the page/s with the embed malicious shortcode [email protected] 5.4 0.17% 2021-10-18 2024-11-21
«« First « Prev Page 2 / 2 Next »
cvelogic Threat Intelligence