Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

BrainStormForce — Vulnerabilities & Security Advisories 49

Browse all 49 CVE security advisories affecting BrainStormForce. AI-powered Chinese analysis, POCs, and references for each vulnerability.

BrainStormForce operates as a provider of enterprise collaboration and knowledge management solutions, primarily serving organizations seeking centralized information sharing platforms. Security audits have identified forty-nine Common Vulnerabilities and Exposures (CVEs) associated with its software ecosystem, indicating a significant historical attack surface. The most prevalent vulnerability classes include Cross-Site Scripting (XSS), which allows attackers to inject malicious scripts into web pages viewed by other users, and Remote Code Execution (RCE) flaws that enable unauthorized control over server systems. Additionally, instances of broken access control and privilege escalation have been documented, suggesting weaknesses in user permission management. While no single catastrophic data breach has been widely publicized as a direct result of these specific CVEs, the cumulative nature of these flaws highlights the necessity for rigorous patch management and continuous security monitoring to mitigate risks within deployed environments.

Found 10 results / 49Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2026-0950 Spectra Gutenberg Blocks <= 2.19.17 - Unauthenticated Information Disclosure in Sensitive Data — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-200 5.3 Medium2026-02-03
CVE-2025-11162 Spectra <= 2.19.14 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom CSS — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-79 6.4 Medium2025-11-05
CVE-2025-1784 Spectra – WordPress Gutenberg Blocks <= 2.19.0 - Authenticated (Contributor+) Stored Cross-Site Scripting — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-79 6.4 Medium2025-03-26
CVE-2024-10484 Spectra – WordPress Gutenberg Blocks <= 2.16.2 - Authenticated (Contributor+) Stored Cross-Site Scripting via Team Widget — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-79 6.4 Medium2024-12-03
CVE-2024-4366 Spectra – WordPress Gutenberg Blocks <= 2.13.0 - Authenticated (Author+) Stored Cross-Site Scripting — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-79 6.4 Medium2024-05-24
CVE-2024-1814 Spectra – WordPress Gutenberg Blocks <= 2.12.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Testimonial Block — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-79 6.4 Medium2024-05-23
CVE-2024-1815 Spectra – WordPress Gutenberg Blocks <= 2.12.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Image Gallery Block — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-79 6.4 Medium2024-05-23
CVE-2024-3107 Spectra – WordPress Gutenberg Blocks <= 2.12.6 - Authenticated (Contributor+) Path Traversal — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-22 4.3 Medium2024-05-02
CVE-2023-6486 Spectra – WordPress Gutenberg Blocks <= 2.10.3 - Authenticated(Contributor+) Cross-Site Scripting via Custom CSS — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-79 6.4 Medium2024-04-09
CVE-2020-36702 Spectra – WordPress Gutenberg Blocks <= 1.14.7 - Missing Authorization — Spectra Gutenberg Blocks – Website Builder for the Block EditorCWE-862 5.5 Medium2023-06-07

This page lists every published CVE security advisory associated with BrainStormForce. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.