Vulnerabilities > Jwpegram

DATE CVE VULNERABILITY TITLE RISK
2025-03-11 CVE-2025-28871 Cross-site Scripting vulnerability in Jwpegram Block Spam BY Math Reloaded
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in jwpegram Block Spam By Math Reloaded allows Stored XSS.
network
low complexity
jwpegram CWE-79
4.8
2025-03-11 CVE-2025-28872 Missing Authorization vulnerability in Jwpegram Block Spam BY Math Reloaded
Missing Authorization vulnerability in jwpegram Block Spam By Math Reloaded allows Accessing Functionality Not Properly Constrained by ACLs.
network
low complexity
jwpegram CWE-862
critical
9.8