Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Post Grid — Vulnerabilities & Security Advisories 15

All 15 CVE vulnerabilities found in Post Grid, with AI-generated Chinese analysis, references, and POCs.

Vendor: Unknown

CVE IDTitleCVSSSeverityPublished
CVE-2024-13796 Post Grid and Gutenberg Blocks – ComboBlocks <= 2.3.6 - Unauthenticated User Information Exposure CWE-200 5.3 Medium2025-02-28
CVE-2024-13798 Post Grid and Gutenberg Blocks – ComboBlocks <= 2.3.5 - Unauthenticated Paid Order Creation CWE-20 5.3 Medium2025-02-22
CVE-2021-4450 Post Grid <= 2.1.12 - Contributor+ SQL Injection CWE-89 8.8 High2024-10-16
CVE-2024-7588 Gutenberg Blocks, Page Builder – ComboBlocks <= 2.2.87 - Authenticated (Contributor+) Stored Cross-Site Scripting via Accordion Block CWE-79 6.4 Medium2024-08-14
CVE-2024-6346 Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks <= 2.2.85 - Authenticated (Contributor+) Stored Cross-Site Scripting via redirectURL Parameter of Date Countdown Widget CWE-79 6.4 Medium2024-08-01
CVE-2024-4042 Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel - Combo Blocks <= 2.2.80 - Authenticated (Contributor+) Stored Cross-Site Scripting via Block Attribute CWE-79 6.4 Medium2024-06-07
CVE-2024-1988 Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks <= 2.2.80 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 6.4 Medium2024-06-07
CVE-2024-3155 Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks <= 2.2.80 - Authenticated (Contributor+) Stored Cross-Site Scripting CWE-79 6.4 Medium2024-05-21
CVE-2024-32816 WordPress Combo Blocks plugin <= 2.2.78 - Sensitive Data Exposure via API vulnerability CWE-200 7.5 High2024-04-24
CVE-2024-30441 WordPress Combo Blocks plugin <= 2.2.74 - Reflected Cross Site Scripting (XSS) vulnerability CWE-79 7.1 High2024-03-29
CVE-2023-7072 Post Grid Combo – 36+ Gutenberg Blocks <= 2.2.68 - Information Exposure via get_posts API Endpoint CWE-202 7.5 High2024-03-12
CVE-2023-6645 Post Grid Combo – 36+ Gutenberg Blocks <= 2.2.64 - Authenticated (Contributor+) Cross-Site Scripting CWE-79 6.4 Medium2024-01-11
CVE-2022-0447 Post Grid < 2.1.16 - Reflected Cross-Site Scripting via post_types CWE-79 5.4 -2022-04-11
CVE-2021-24986 Post Grid < 2.1.16 - Reflected Cross-Site Scripting via keyword CWE-79 6.1 -2022-04-11
CVE-2021-24488 Post Grid < 2.1.8 - Reflected Cross-Site Scripting (XSS) CWE-79 6.1 -2021-08-02

All 15 known CVE vulnerabilities affecting Post Grid with full Chinese analysis, references, and POCs where available.