Medium 6.5
2025-12-27< 1.2.8
Bold Timeline Lite <= 1.2.7 - Authenticated (Contributor+) Stored Cross-Site Scripting
Minimum safe version
1.2.8
Update to 1.2.8 or later to address 5 fixable vulnerabilities
Bold Timeline Lite <= 1.2.7 - Authenticated (Contributor+) Stored Cross-Site Scripting
CVE-2025-14032
CVE-2024-43294
CVE-2023-45110
CVE-2022-4828