Vulnerabilities > Codeboxr

DATE CVE VULNERABILITY TITLE RISK
2024-02-01 CVE-2023-51514 Cross-site Scripting vulnerability in Codeboxr CBX Bookmark & Favorite
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Codeboxr Team CBX Bookmark & Favorite allows Stored XSS.This issue affects CBX Bookmark & Favorite: from n/a through 1.7.13.
network
low complexity
codeboxr CWE-79
5.4
2024-01-31 CVE-2024-22297 Cross-site Scripting vulnerability in Codeboxr CBX MAP 1.1.11
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Codeboxr CBX Map for Google Map & OpenStreetMap allows Stored XSS.This issue affects CBX Map for Google Map & OpenStreetMap: from n/a through 1.1.11.
network
low complexity
codeboxr CWE-79
5.4
2023-11-22 CVE-2023-28747 Cross-Site Request Forgery (CSRF) vulnerability in Codeboxr CBX Currency Converter
Cross-Site Request Forgery (CSRF) vulnerability in codeboxr CBX Currency Converter plugin <= 3.0.3 versions.
network
low complexity
codeboxr CWE-352
8.8
2023-01-23 CVE-2022-4383 Unspecified vulnerability in Codeboxr CBX Petition for Wordpress 1.0.3
The CBX Petition for WordPress plugin through 1.0.3 does not properly sanitize and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.
network
low complexity
codeboxr
critical
9.8