Vulnerabilities > Backupbliss
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-07-28 | CVE-2023-3977 | Several plugins for WordPress by Inisev are vulnerable to Cross-Site Request Forgery to unauthorized installation of plugins due to a missing nonce check on the handle_installation function that is called via the inisev_installation AJAX aciton in various versions. | 4.3 |
2021-11-19 | CVE-2021-36884 | Cross-site Scripting vulnerability in Backupbliss Backup Migration Authenticated Persistent Cross-Site Scripting (XSS) vulnerability discovered in WordPress Backup Migration plugin <= 1.1.5 versions. | 5.4 |