| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2023-2083 | Essential Blocks <= 4.0.6 - Missing Authorization via save | wpdevteam | Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns | Medium | 4.3 | 2023-06-09 05:33:39 | Deep Dive |
| CVE-2023-1895 | Getwid – Gutenberg Blocks <= 1.8.3 - Authenticated(Subscriber+) Server Side Request Forgery | jetmonsters | Getwid – Gutenberg Blocks | High | 8.5 | 2023-06-09 05:33:38 | Deep Dive |
| CVE-2023-2087 | Essential Blocks <= 4.0.6 - Cross-Site Request Forgery via save | wpdevteam | Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns | Medium | 4.3 | 2023-06-09 05:33:35 | Deep Dive |
| CVE-2023-2085 | Essential Blocks <= 4.0.6 - Missing Authorization via templates | wpdevteam | Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns | Medium | 4.3 | 2023-06-09 05:33:27 | Deep Dive |
| CVE-2023-2086 | Essential Blocks <= 4.0.6 - Missing Authorization via template_count | wpdevteam | Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns | Medium | 4.3 | 2023-06-09 05:33:25 | Deep Dive |
| CVE-2023-1910 | Getwid – Gutenberg Blocks <= 1.8.3 - Improper Authorization via get_remote_templates REST endpoint | jetmonsters | Getwid – Gutenberg Blocks | Medium | 4.3 | 2023-06-09 05:33:20 | Deep Dive |
| CVE-2023-2084 | Essential Blocks <= 4.0.6 - Missing Authorization via get | wpdevteam | Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns | Medium | 4.3 | 2023-06-09 05:33:10 | Deep Dive |
| CVE-2020-36702 | Spectra – WordPress Gutenberg Blocks <= 1.14.7 - Missing Authorization | brainstormforce | Spectra Gutenberg Blocks – Website Builder for the Block Editor | Medium | 5.5 | 2023-06-07 01:51:18 | Deep Dive |
| CVE-2023-0584 | VK Blocks <= 1.57.0.5 - Authenticated(Contributor+) Settings Update | vektor-inc | VK Blocks | Medium | 4.3 | 2023-06-03 01:59:29 | Deep Dive |
| CVE-2023-0583 | VK Blocks <= 1.57.0.5 - Authenticated(Contributor+) Settings Update | vektor-inc | VK Blocks | Medium | 4.3 | 2023-06-03 01:59:28 | Deep Dive |
| CVE-2023-33212 | WordPress JetFormBuilder Plugin <= 3.0.6 is vulnerable to Cross Site Request Forgery (CSRF) | Crocoblock | JetFormBuilder — Dynamic Blocks Form Builder | Medium | 4.3 | 2023-05-28 17:20:01 | Deep Dive |
| CVE-2023-27923 | WordPress plugin VK Blocks 跨站脚本漏洞 | Vektor,Inc. | VK Blocks and VK Blocks Pro | 中危 | - | 2023-05-23 00:00:00 | Deep Dive |
| CVE-2023-27925 | WordPress plugin VK Blocks 跨站脚本漏洞 | Vektor,Inc. | VK Blocks and VK Blocks Pro | 中危 | - | 2023-05-23 00:00:00 | Deep Dive |
| CVE-2022-47183 | WordPress Extra Block Design, Style, CSS for ANY Gutenberg Blocks Plugin <= 0.2.6 is vulnerable to Cross Site Request Forgery (CSRF) | StylistWP | Extra Block Design, Style, CSS for ANY Gutenberg Blocks | Medium | 5.4 | 2023-05-22 09:11:58 | Deep Dive |
| CVE-2023-22713 | WordPress Gutenberg Blocks by WordPress Download Manager Plugin <= 2.1.8 is vulnerable to Cross Site Scripting (XSS) | WordPress Download Manager | Gutenberg Blocks by WordPress Download Manager | Medium | 6.5 | 2023-05-03 11:14:44 | Deep Dive |
| CVE-2023-0484 | Contact Form 7 Widget For Elementor Page Builder & Gutenberg Blocks < 1.1.6 - Arbitrary Plugin Activation via CSRF | Unknown | Contact Form 7 Widget For Elementor Page Builder & Gutenberg Blocks | 中危 | - | 2023-03-27 15:37:28 | Deep Dive |
| CVE-2023-0441 | Gallery Blocks with Lightbox < 3.0.8 - Subscriber+ Arbitrary Options Update | Unknown | Gallery Blocks with Lightbox. Image Gallery, (HTML5 video , YouTube, Vimeo) Video Gallery and Lightbox for native gallery | 高危 | - | 2023-03-27 15:37:16 | Deep Dive |
| CVE-2023-22707 | WordPress Greenshift – animation and page builder blocks Plugin <= 4.9.9 is vulnerable to Cross Site Scripting (XSS) | Wpsoul | Greenshift – animation and page builder blocks | Medium | 5.9 | 2023-03-27 14:05:48 | Deep Dive |
| CVE-2017-20090 | Global Content Blocks Plugin cross-site request forgery | unspecified | Global Content Blocks Plugin | Medium | 4.3 | 2022-06-23 04:20:30 | Deep Dive |
| CVE-2022-0448 | CP Blocks < 1.0.15 - Admin+ Stored Cross-Site Scripting | Unknown | CP Blocks | 中危 | - | 2022-03-07 08:16:48 | Deep Dive |