Browse all 5 CVE security advisories affecting shanebp. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Shanebp focuses on web application security research, primarily identifying vulnerabilities in open-source software and content management systems. Their work has historically centered on remote code execution, cross-site scripting, and privilege escalation flaws, contributing five CVEs to date. Security analysis shows consistent emphasis on input validation and access control weaknesses. While no major public incidents are directly attributed to this researcher, their contributions highlight common web security pitfalls. The profile demonstrates practical vulnerability discovery skills with real-world implications for application security, particularly in widely deployed platforms where their findings have informed remediation efforts across the security community.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-28875 | WordPress BP Email Assign Templates By shanebp plugin <= 1.6 - Cross-Site Scripting vulnerability — BP Email Assign TemplatesCWE-79 | 5.9 | Medium | 2025-03-11 |
| CVE-2025-28874 | WordPress BP Email Assign Templates By shanebp plugin <= 1.7 - Arbitrary Content Deletion vulnerability — BP Email Assign TemplatesCWE-639 | 6.5 | Medium | 2025-03-11 |
| CVE-2025-24631 | WordPress BP Email Assign Templates Plugin <= 1.5 - Reflected Cross Site Scripting (XSS) vulnerability — BP Email Assign TemplatesCWE-79 | 7.1 | High | 2025-02-03 |
| CVE-2024-12441 | BP Email Assign Templates <= 1.5 - Reflected Cross-Site Scripting — BP Email Assign TemplatesCWE-79 | 6.1 | Medium | 2024-12-12 |
This page lists every published CVE security advisory associated with shanebp. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.