VYPR
Vendor

Oneblog Project

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2021-46085MedJan 25, 2022
    risk 0.42cvss 6.5epss 0.01

    OneBlog <= 2.2.8 is vulnerable to Insecure Permissions. Low level administrators can delete high-level administrators beyond their authority.

  • CVE-2021-46025MedJan 19, 2022
    risk 0.35cvss 5.4epss 0.01

    A Cross SIte Scripting (XSS) vulnerability exists in OneBlog <= 2.2.8. via the add function in the operation tab list in the background.