Vulnerabilities > Blazethemes

DATE CVE VULNERABILITY TITLE RISK
2024-10-22 CVE-2024-9541 Unspecified vulnerability in Blazethemes News KIT Elementor Addons
The News Kit Elementor Addons plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.2.1 via the render function in includes/widgets/canvas-menu/canvas-menu.php.
network
low complexity
blazethemes
4.3
2024-06-21 CVE-2024-37198 Cross-Site Request Forgery (CSRF) vulnerability in Blazethemes Digital Newspaper
Cross-Site Request Forgery (CSRF) vulnerability in blazethemes Digital Newspaper.This issue affects Digital Newspaper: from n/a through 1.1.5.
network
low complexity
blazethemes CWE-352
8.8