Vulnerability index

Browse CVEs

24 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2024-53801 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder … Bold Page Builder 5.2.2+ Fix from $1,6002024-12-06 HIGH 8.8 CVE-2024-50417 Missing Authorization vulnerability in boldthemes Bold Page Builder bold-page-builder allows Exploiting Incorrectly Configured Access Control Securit… Bold Page Builder 5.1.4+ Fix from $1,9502024-11-19 MEDIUM 5.4 CVE-2024-47298 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder … Bold Page Builder 5.1.2+ Fix from $1,6002024-10-06 MEDIUM 5.4 CVE-2024-47391 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder … Bold Page Builder 5.1.1+ Fix from $1,6002024-10-05 MEDIUM 5.4 CVE-2024-7100 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_button shortcode in all versions up to… Bold Page Builder 5.0.3+ Fix from $1,6002024-07-30 MEDIUM 5.4 CVE-2024-2734 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's AI features all versions up to, and includin… Bold Page Builder 4.8.9+ Fix from $1,6002024-04-10 MEDIUM 5.4 CVE-2024-2735 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Price List' element in all versions up to, and inclu… Bold Page Builder 4.8.9+ Fix from $1,6002024-04-10 MEDIUM 5.4 CVE-2024-2736 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTML Tags in all versions up to, and including, 4.8.8 due… Bold Page Builder 4.8.9+ Fix from $1,6002024-04-10 MEDIUM 5.4 CVE-2024-2733 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's "Separator" element in all versions up to, a… Bold Page Builder 4.8.9+ Fix from $1,6002024-04-10 MEDIUM 5.4 CVE-2024-3266 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribute of widgets in all versions up to, and i… Bold Page Builder 4.8.9+ Fix from $1,6002024-04-09 MEDIUM 5.4 CVE-2024-3267 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_price_list shortcode in all versions u… Bold Page Builder 4.8.9+ Fix from $1,6002024-04-09 MEDIUM 5.4 CVE-2024-30442 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.… Bold Page Builder 4.8.1+ Fix from $1,6002024-03-29 MEDIUM 5.4 CVE-2024-30179 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.… Bold Page Builder 4.7.7+ Fix from $1,6002024-03-27 MEDIUM 5.4 CVE-2024-1157 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's button URL in all versions up to, and includ… Bold Page Builder 4.8.1+ Fix from $1,6002024-02-13 MEDIUM 5.4 CVE-2024-1159 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and incl… Bold Page Builder 4.8.1+ Fix from $1,6002024-02-13 MEDIUM 5.4 CVE-2024-1160 The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Icon Link in all versions up to, and includi… Bold Page Builder 4.8.1+ Fix from $1,6002024-02-13 MEDIUM 5.4 CVE-2023-49823 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldThemes Bold Page Builder allows Stored XSS.… Bold Page Builder after 4.6.1 Fix from $1,6002023-12-15 MEDIUM 5.4 CVE-2022-4828 The Bold Timeline Lite WordPress plugin before 1.1.5 does not validate and escape some of its shortcode attributes before outputting them back in the… Bold Timeline Lite 1.1.5+ Fix from $1,6002023-01-30 MEDIUM 6.5 CVE-2021-24820 The Cost Calculator WordPress plugin through 1.6 allows authenticated users (Contributor+ in versions < 1.5, and Admin+ in versions <= 1.6) to perfor… Cost Calculator after 1.6 Fix from $1,6002022-02-28 HIGH 8.8 CVE-2021-24579EPSS 8% The bt_bb_get_grid AJAX action of the Bold Page Builder WordPress plugin before 3.1.6 passes user input into the unserialize() function without any v… Bold Page Builder 3.1.6+ Fix from $1,9502021-08-30 CRITICAL 9.8 CVE-2021-24321EPSS 67% The Bello - Directory & Listing WordPress theme before 1.6.0 did not sanitise the bt_bb_listing_field_price_range_to, bt_bb_listing_field_now_open, b… Bello 1.6.0+ Fix from $2,3002021-06-01 MEDIUM 6.1 CVE-2021-24320EPSS 11% The Bello - Directory & Listing WordPress theme before 1.6.0 did not properly sanitise and escape its listing_list_view, bt_bb_listing_field_my_lat, … Bello 1.6.0+ Fix from $1,6002021-06-01 MEDIUM 5.4 CVE-2021-24319 The Bello - Directory & Listing WordPress theme before 1.6.0 did not properly sanitise its post_excerpt parameter before outputting it back in the sh… Bello 1.6.0+ Fix from $1,6002021-06-01 HIGH 7.5 CVE-2019-15821EPSS 11% The bold-page-builder plugin before 2.3.2 for WordPress has no protection against modifying settings and importing data. Bold Page Builder 2.3.2+ Fix from $1,9502019-08-30