Skip to main content

Vendor/product archive

ideabox / powerpack_for_beaver_builder CVEs

Beta · best-effort

6 CVEs tagged to ideabox / powerpack_for_beaver_builder0 Critical, 1 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2024-12239

Published Dec 17, 2024

The PowerPack Lite for Beaver Builder plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the navigate parameter in all versions up to, and including, 1.3.0.5…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-43330

Published Aug 18, 2024

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in IdeaBox Creations PowerPack for Beaver Builder allows Reflected XSS.Th…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-37409

Published Jul 22, 2024

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in IdeaBox Creations PowerPack Lite for Beaver Builder powerpack-addon-for-beave…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-37410

Published Jul 9, 2024

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in IdeaBox Creations PowerPack Lite for Beaver Builder powerp…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-2289

Published Apr 9, 2024

The PowerPack Lite for Beaver Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the link in multiple elements in all versions up to, and including, 1.3…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-0176

Published Feb 14, 2022

The PowerPack Lite for Beaver Builder WordPress plugin before 1.2.9.3 does not sanitise and escape the tab parameter before outputting it back in an admin page, leading to a Refle…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1