Skip to main content

Vendor/product archive

wp-ban_project / wp-ban CVEs

Beta · best-effort

4 CVEs tagged to wp-ban_project / wp-ban0 Critical, 0 High, 2 Medium, 2 Low, 0 Unrated.

CVE-2022-4260

Published Jan 2, 2023

The WP-Ban WordPress plugin before 1.69.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scri…

CVSS 4.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-4631

Published Dec 21, 2022

A vulnerability, which was classified as problematic, was found in WP-Ban. Affected is an unknown function of the file ban-options.php. The manipulation leads to cross site script…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-4252

Published Dec 18, 2022

A vulnerability, which was classified as problematic, has been found in WP-Ban. This issue affects the function toggle_checkbox of the file ban-options.php. The manipulation of th…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-6230

Published Oct 25, 2014

WP-Ban plugin before 1.6.4 for WordPress, when running in certain configurations, allows remote attackers to bypass the IP blacklist via a crafted X-Forwarded-For header.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1