Vulnerabilities > Fastlinemedia > Beaver Themer > 1.2.4
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-04-09 | CVE-2023-6694 | Cross-site Scripting vulnerability in Fastlinemedia Beaver Themer The Beaver Themer plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 1.4.9 due to insufficient input sanitization and output escaping on user supplied custom fields. | 5.4 |
2024-04-09 | CVE-2023-6695 | Unspecified vulnerability in Fastlinemedia Beaver Themer The Beaver Themer plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.9 via the 'wpbb' shortcode. | 6.5 |