Filtered by vendor Wpbeaverbuilder Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-3380 1 Wpbeaverbuilder 1 Customizer Export\/import 2024-11-21 7.2 High
The Customizer Export/Import WordPress plugin before 0.9.5 unserializes the content of an imported file, which could lead to PHP object injection issues when an admin imports (intentionally or not) a malicious file and a suitable gadget chain is present on the blog.
CVE-2024-43926 2 The Beaver Builder Team, Wpbeaverbuilder 2 Beaver Builder, Beaver Builder 2024-09-03 7.1 High
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in The Beaver Builder Team Beaver Builder allows Reflected XSS.This issue affects Beaver Builder: from n/a through 2.8.3.2.