Extension WordPress
Vulnérabilités Page Builder Gutenberg Blocks – CoBlocks
Cette page rassemble les failles publiées pour Page Builder Gutenberg Blocks – CoBlocks, leurs plages de versions affectées et les correctifs signalés dans la base locale.
Historique de sécurité
CVE et vulnérabilités de Page Builder Gutenberg Blocks – CoBlocks
8 fiches
Page Builder Gutenberg Blocks <= 3.1.16 – Authenticated (Contributor+) Stored Cross-Site Scripting via External iCal Feed Data
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via external iCal feed data in all versions up to, and including, 3.1.16 due to insufficient output escaping of event titles, descriptions,…
*-3.1.16
3.1.17
17/04/2026
Page Builder Gutenberg Blocks – CoBlocks <= 3.1.16 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 3.1.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers,…
*-3.1.16
3.1.17
07/01/2026
CoBlocks <= 3.1.13 – Missing Authorization
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 3.1.13. This makes it possible for authenticated…
*-3.1.13
3.1.14
24/01/2025
Page Builder Gutenberg Blocks – CoBlocks <= 3.1.12 – Authenticated (Editor+) Stored Cross-Site Scripting
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post settings in all versions up to, and including, 3.1.12 due to insufficient input sanitization and output escaping. This makes it…
*-3.1.12
3.1.13
08/08/2024
Page Builder Gutenberg Blocks – CoBlocks <= 3.1.11 – Authenticated (Contributor+) Server-Side Request Forgery
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.1.11. This makes it possible for authenticated attackers, with Contributor-level access and above, to make…
*-3.1.11
3.1.12
02/07/2024
Page Builder Gutenberg Blocks – CoBlocks <= 3.1.9 – Authenticated (Contributor+) Stored Cross-Site Scripting via Social Profiles
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Social Profiles widget in all versions up to, and including, 3.1.9 due to insufficient input sanitization and output escaping on…
*-3.1.9
3.1.10
31/05/2024
Page Builder Gutenberg Blocks – CoBlocks <= 3.1.6 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Icon Widget's in all versions up to, and including, 3.1.6 due to insufficient input sanitization and output escaping on…
*-3.1.6
3.1.7
22/03/2024
Page Builder Gutenberg Blocks – CoBlocks <= 3.1.6 – Authenticated (Contributor+) Stored Cross-Site Scripting
The Page Builder Gutenberg Blocks – CoBlocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's blocks in all versions up to, and including, 3.1.6 due to insufficient input sanitization and output escaping on user…
*-3.1.6
3.1.7
12/03/2024
Extensions également surveillés
WP Commander
Rechercher dans toute la base WordPress
Utilisez la recherche globale pour retrouver une extension, un thème, une CVE ou un identifiant de vulnérabilité.