All 3 CVE vulnerabilities found in Nexa Blocks, with AI-generated Chinese analysis, references, and POCs.
Vendor: wpdive
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-25429 | WordPress Nexa Blocks plugin <= 1.1.1 - PHP Object Injection vulnerability CWE-502 | 9.8 | Critical | 2026-03-25 |
| CVE-2025-30952 | WordPress Nexa Blocks plugin <= 1.1.0 - Cross Site Scripting (XSS) Vulnerability CWE-79 | 6.5 | Medium | 2025-06-06 |
| CVE-2025-30976 | WordPress Nexa Blocks plugin <= 1.1.1 - Server Side Request Forgery (SSRF) vulnerability CWE-918 | 4.9 | Medium | 2025-06-06 |
All 3 known CVE vulnerabilities affecting Nexa Blocks with full Chinese analysis, references, and POCs where available.