VendorsOneblog Projectoneblogany version
Vulnerabilities

Oneblog Project Oneblog any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2021-46085
OneBlog <= 2.2.8 is vulnerable to Insecure Permissions. Low level administrators can delete high-level administrators beyond their authority.
Published 2022-01-25 · Modified
6.5EPSS 0.007
CVE-2021-46025
A Cross SIte Scripting (XSS) vulnerability exists in OneBlog <= 2.2.8. via the add function in the operation tab list in the background.
Published 2022-01-19 · Modified
5.4EPSS 0.005