CVEs (6)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Ideabox 1Powerpack For Beaver Builder Apr 15, 2025 Dec 17, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 The PowerPack Lite for Beaver Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the navigate parameter in all versions up to, and including, 1.3.0.5 due to insufficient input sanitization a...Show more |
1Ideabox 1Powerpack For Beaver Builder Apr 15, 2025 Aug 18, 2024 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in IdeaBox Creations PowerPack for Beaver Builder allows Reflected XSS.This issue affects PowerPack for Beaver Bui...Show more |
1Ideabox 1Powerpack For Beaver Builder Apr 23, 2026 Jul 22, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in IdeaBox Creations PowerPack Lite for Beaver Builder powerpack-addon-for-beaver-builder.This issue affects PowerPack Li...Show more |
1Ideabox 1Powerpack For Beaver Builder Apr 23, 2026 Jul 9, 2024 N/A· v4 7.2 HIGH· v3 N/A· v2 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in IdeaBox Creations PowerPack Lite for Beaver Builder powerpack-addon-for-beaver-builder.This issue a...Show more |
1Ideabox 1Powerpack For Beaver Builder Apr 8, 2026 Apr 9, 2024 N/A· v4 5.4 MEDIUM· v3 N/A· v2 The PowerPack Lite for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link in multiple elements in all versions up to, and including, 1.3.0 due to insufficient input sanitization...Show more |
1Ideabox 1Powerpack For Beaver Builder Apr 15, 2025 Feb 14, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 The PowerPack Lite for Beaver Builder WordPress plugin before 1.2.9.3 does not sanitise and escape the tab parameter before outputting it back in an admin page, leading to a Reflected Cross-Site Scripting |