Extension WordPress
Vulnérabilités Blockons – Gutenberg blocks for WordPress and WooCommerce websites
Cette page rassemble les failles publiées pour Blockons – Gutenberg blocks for WordPress and WooCommerce websites, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Blockons – Gutenberg blocks for WordPress and WooCommerce websites
3 fiches
Blockons <= 1.2.15 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Blockons plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 1.2.15 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above,…
*-1.2.15
Non indiqué
23/01/2026
Blockons <= 1.2.15 – Missing Authorization
The Blockons plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 1.2.15. This makes it possible for unauthenticated attackers to perform an unauthorized action.
*-1.2.15
Non indiqué
08/01/2026
Freemius SDK <= 2.5.9 – Reflected Cross-Site Scripting via fs_request_get
The Freemius SDK for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘fs_request_get’ function in versions up to, and including, 2.5.9 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to…
1.0.2-1.0.7
1.0.8
18/07/2023
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.