Vulnerabilities > Shanebp

DATE CVE VULNERABILITY TITLE RISK
2025-03-11 CVE-2025-28874 Authorization Bypass Through User-Controlled Key vulnerability in Shanebp BP Email Assign Templates
Authorization Bypass Through User-Controlled Key vulnerability in shanebp BP Email Assign Templates allows Exploiting Incorrectly Configured Access Control Security Levels.
network
low complexity
shanebp CWE-639
4.9
2025-03-11 CVE-2025-28875 Cross-site Scripting vulnerability in Shanebp BP Email Assign Templates
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in shanebp BP Email Assign Templates allows Stored XSS.
network
low complexity
shanebp CWE-79
4.8