H3blog operates a focused blogging platform where the durable vulnerability signal centers on web-application input-handling weaknesses, specifically code injection and cross-site scripting flaws that arise from insufficient neutralization of user-supplied data during page generation. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by H3blog over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-13182MEDIUM A vulnerability was identified in pojoin h3blog 1.0. The impacted element is an unknown function of the file /admin/cms/category/addtitle. The manipulation of the argument Title le | Nov 14, 2025 | 4.8 | 18 | NO | NO |
CVE-2025-13181MEDIUM A vulnerability was determined in pojoin h3blog 1.0. The affected element is an unknown function of the file /admin/cms/material/add. Executing a manipulation of the argument Name | Nov 14, 2025 | 4.8 | 18 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by H3blog.
Media articles that mention a CVE ID that affects a product developed by H3blog — matched by CVE ID, not by vendor name.