Filtered by vendor Blackandwhitedigital
Subscribe
Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2025-25167 | 1 Blackandwhitedigital | 1 Bookpress | 2025-02-11 | N/A | 9.8 CRITICAL |
Missing Authorization vulnerability in blackandwhitedigital BookPress – For Book Authors allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects BookPress – For Book Authors: from n/a through 1.2.7. | |||||
CVE-2025-25168 | 1 Blackandwhitedigital | 1 Bookpress | 2025-02-11 | N/A | 6.1 MEDIUM |
Cross-Site Request Forgery (CSRF) vulnerability in blackandwhitedigital BookPress – For Book Authors allows Cross-Site Scripting (XSS). This issue affects BookPress – For Book Authors: from n/a through 1.2.7. | |||||
CVE-2023-23863 | 1 Blackandwhitedigital | 1 Treepress | 2023-05-12 | N/A | 4.8 MEDIUM |
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Black and White Digital Ltd TreePress – Easy Family Trees & Ancestor Profiles plugin <= 2.0.22 versions. |