CVE-2020-14205: Divebook Project Divebook
Medium severity, CVSS 5.3. EPSS: 1.2% chance of exploitation in the next 30 days.
The DiveBook plugin 1.1.4 for WordPress is prone to improper access control in the Log Dive form because it fails to perform authorization checks. An attacker may leverage this issue to manipulate the integrity of dive logs.
Affected products
- Divebook Project Divebook: version 1.1.4 only
Published 2020-12-08. Last modified 2026-06-17.