Vulnerabilities > Thirtybees > Bees Blog > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-12-30 CVE-2023-52264 Cross-site Scripting vulnerability in Thirtybees Bees Blog
The beesblog (aka Bees Blog) component before 1.6.2 for thirty bees allows Reflected XSS because controllers/front/post.php sharing_url is mishandled.
network
low complexity
thirtybees CWE-79
6.1