Vulnerabilities > Blossomthemes

DATE CVE VULNERABILITY TITLE RISK
2024-03-12 CVE-2024-2107 Unspecified vulnerability in Blossomthemes Blossom SPA
The Blossom Spa theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.3.4 via generated source.
network
low complexity
blossomthemes
7.5
2022-09-23 CVE-2022-37338 Cross-site Scripting vulnerability in Blossomthemes Blossom Recipe Maker
Multiple Authenticated (contributor+) Stored Cross-Site Scripting (XSS) vulnerabilities in Blossom Recipe Maker plugin <= 1.0.7 at WordPress.
network
low complexity
blossomthemes CWE-79
5.4