Extension WordPress
Vulnérabilités Gutenberg Blocks and Page Layouts – Attire Blocks
Cette page rassemble les failles publiées pour Gutenberg Blocks and Page Layouts – Attire Blocks, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Gutenberg Blocks and Page Layouts – Attire Blocks
3 fiches
Attire Blocks <= 1.9.6 – Cross-Site Request Forgery
The Attire Blocks plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.9.6. This is due to missing or incorrect nonce validation on a function. This makes it possible for unauthenticated attackers…
*-1.9.6
1.9.7
24/01/2025
Gutenberg Blocks and Page Layouts – Attire Blocks <= 1.9.5 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Gutenberg Blocks and Page Layouts – Attire Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'attire-blocks/post-carousel' block in all versions up to, and including, 1.9.5 due to insufficient input sanitization and output escaping.…
*-1.9.5
1.9.6
11/12/2024
Gutenberg Blocks and Page Layouts – Attire Blocks <= 1.9.2 – Missing Authorization
The Gutenberg Blocks and Page Layouts – Attire Blocks plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the disable_fe_assets function in all versions up to, and including, 1.9.2. This…
*-1.9.2
1.9.3
04/06/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.