VYPR
Vendor

Crazy Bone Project

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2022-0385MedFeb 28, 2022
    risk 0.40cvss 6.1epss 0.01

    The Crazy Bone WordPress plugin through 0.6.0 does not sanitise and escape the username submitted via the login from when displaying them back in the log dashboard, leading to an unauthenticated Stored Cross-Site scripting

  • CVE-2015-9430MedSep 26, 2019
    risk 0.40cvss 6.1epss 0.01

    The crazy-bone plugin before 0.6.0 for WordPress has XSS via the User-Agent HTTP header.