← Back

Drawblog

drawblog

Vendor: Drawblog Project • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Drawblog Project
1Drawblog
Jun 17, 2026
Aug 2, 2021
N/A· v4
4.8 MEDIUM· v3
3.5 LOW· v2
The DrawBlog WordPress plugin through 0.90 does not sanitise or validate some of its settings before outputting them back in the page, leading to an authenticated stored Cross-Site Scripting issue