CVE-2025-22347
- EPSS 0.08%
- Veröffentlicht 07.01.2025 11:15:17
- Zuletzt bearbeitet 07.01.2025 11:15:17
Cross-Site Request Forgery (CSRF) vulnerability in BannerSky.com BSK Forms Blacklist allows Blind SQL Injection.This issue affects BSK Forms Blacklist: from n/a through 3.9.
CVE-2024-47624
- EPSS 0.28%
- Veröffentlicht 05.10.2024 15:15:17
- Zuletzt bearbeitet 07.10.2024 17:47:48
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BannerSky BSK Forms Blacklist allows Reflected XSS.This issue affects BSK Forms Blacklist: from n/a through 3.8.1.
CVE-2024-43233
- EPSS 0.61%
- Veröffentlicht 12.08.2024 21:15:33
- Zuletzt bearbeitet 13.08.2024 12:58:25
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in BannerSky BSK Forms Blacklist allows Reflected XSS.This issue affects BSK Forms Blacklist: from n/a through 3.8.
CVE-2023-5980
- EPSS 0.08%
- Veröffentlicht 26.12.2023 19:15:08
- Zuletzt bearbeitet 17.04.2025 21:15:48
The BSK Forms Blacklist WordPress plugin before 3.7 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is dis...
CVE-2023-30872
- EPSS 0.13%
- Veröffentlicht 20.12.2023 17:15:08
- Zuletzt bearbeitet 21.11.2024 08:01:00
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in BannerSky BSK Forms Blacklist.This issue affects BSK Forms Blacklist: from n/a through 3.6.2.