Vulnerabilities (CVE)

Filtered by vendor Wpbakery Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-31213 1 Wpbakery 1 Page Builder 2023-07-19 N/A 5.4 MEDIUM
Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in WPBakery Page Builder plugin <= 6.13.0 versions.
CVE-2020-28650 1 Wpbakery 1 Page Builder 2020-11-27 3.5 LOW 5.4 MEDIUM
The WPBakery plugin before 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mechanism for the Author and Contributor roles.