Vulnerabilities > Brainstormforce
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-12-29 | CVE-2023-49830 | Unspecified vulnerability in Brainstormforce Astra Improper Control of Generation of Code ('Code Injection') vulnerability in Brainstorm Force Astra Pro.This issue affects Astra Pro: from n/a through 4.3.1. | 8.8 |
2023-12-14 | CVE-2023-49833 | Unspecified vulnerability in Brainstormforce Spectra Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brainstorm Force Spectra – WordPress Gutenberg Blocks allows Stored XSS.This issue affects Spectra – WordPress Gutenberg Blocks: from n/a through 2.7.9. | 5.4 |
2023-12-07 | CVE-2023-41804 | Unspecified vulnerability in Brainstormforce Starter Templates Server-Side Request Forgery (SSRF) vulnerability in Brainstorm Force Starter Templates — Elementor, WordPress & Beaver Builder Templates.This issue affects Starter Templates — Elementor, WordPress & Beaver Builder Templates: from n/a through 3.2.4. | 5.4 |
2023-11-30 | CVE-2023-36682 | Unspecified vulnerability in Brainstormforce Schema PRO 2.7.7 Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force US LLC Schema Pro allows Cross Site Request Forgery.This issue affects Schema Pro: from n/a through 2.7.7. | 8.8 |
2023-11-30 | CVE-2023-36685 | Unspecified vulnerability in Brainstormforce Cartflows Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force US LLC CartFlows Pro allows Cross Site Request Forgery.This issue affects CartFlows Pro: from n/a through 1.11.12. | 8.8 |
2023-10-27 | CVE-2023-46211 | Unspecified vulnerability in Brainstormforce Ultimate Addons for Wpbakery Page Builder Auth. | 5.4 |
2023-06-07 | CVE-2020-36702 | Missing Authorization vulnerability in Brainstormforce Spectra The Ultimate Addons for Gutenberg plugin for WordPress is vulnerable to Authenticated Settings Change in versions up to, and including, 1.14.7. | 4.3 |
2023-05-26 | CVE-2023-25058 | Unspecified vulnerability in Brainstormforce Schema Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force Schema – All In One Schema Rich Snippets plugin <= 1.6.5 versions. | 8.8 |
2023-05-23 | CVE-2022-46851 | Unspecified vulnerability in Brainstormforce Starter Templates Cross-Site Request Forgery (CSRF) vulnerability in Brainstorm Force Starter Templates plugin <= 3.1.20 versions. | 8.8 |
2023-02-21 | CVE-2020-36656 | Cross-site Scripting vulnerability in Brainstormforce Spectra The Spectra WordPress plugin before 1.15.0 does not sanitize user input as it reaches its style HTML attribute, allowing contributors to conduct stored XSS attacks via the plugin's Gutenberg blocks. | 5.4 |