Nexcess Kadence Blocks是Nexcess公司的一款构建网站内容的框架。 Nexcess Kadence Blocks 3.7.7及之前版本存在授权问题漏洞,该漏洞源于插件未正确验证用户授权执行操作,可能导致经过身份验证的攻击者(具有贡献者级别及以上访问权限)通过wp_upload_bits()和wp_insert_attachment()下载远程图像到站点上传目录,从而创建任意媒体库附件,绕过upload_files能力边界。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| stellarwp | Kadence Blocks — Page Builder Toolkit for Gutenberg Editor | ≤ 3.7.7 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| stellarwp | Kadence Blocks — Page Builder Toolkit for Gutenberg Editor | 0 ~ 3.7.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-13246 | 6.4 MEDIUM | GiveWP <= 4.16.0 - Authenticated (Author+) Stored Cross-Site Scripting via 'block_id' Shor |
| CVE-2026-11981 | 4.3 MEDIUM | GiveWP <= 4.15.3 - Cross-Site Request Forgery |
| CVE-2026-12904 | 4.3 MEDIUM | Kadence Blocks <= 3.7.7 - Insecure Direct Object Reference to Authenticated (Contributor+) |
No comments yet