Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-13181 2 H3blog, Pojoin 2 H3blog, H3blog 2026-02-24 3.5 Low
A vulnerability was determined in pojoin h3blog 1.0. The affected element is an unknown function of the file /admin/cms/material/add. Executing a manipulation of the argument Name can lead to cross site scripting. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-13182 2 H3blog, Pojoin 2 H3blog, H3blog 2026-02-24 3.5 Low
A vulnerability was identified in pojoin h3blog 1.0. The impacted element is an unknown function of the file /admin/cms/category/addtitle. The manipulation of the argument Title leads to cross site scripting. The attack can be initiated remotely. The exploit is publicly available and might be used.