Filtered by vendor Stillbreathing
                         Subscriptions
                    
                    
                
                        Filtered by product Bannerman
                         Subscriptions
                    
                    
                
                    Total
                    2 CVE
                
            | CVE | Vendors | Products | Updated | CVSS v3.1 | 
|---|---|---|---|---|
| CVE-2014-4845 | 1 Stillbreathing | 1 Bannerman | 2025-04-12 | N/A | 
| Cross-site scripting (XSS) vulnerability in the BannerMan plugin 0.2.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the bannerman_background parameter to wp-admin/options-general.php. | ||||
| CVE-2022-1275 | 1 Stillbreathing | 1 Bannerman | 2024-11-21 | 4.8 Medium | 
| The BannerMan WordPress plugin through 0.2.4 does not sanitize or escape its settings, which could allow high-privileged users to perform Cross-Site Scripting attacks when the unfiltered_html is disallowed (such as in multisite) | ||||
                            
                                
                                
                                    Page 1 of 1.