cleantalk
Vulnerabilities and Security Researches

Gutenberg Blocks – PublishPress Blocks Gutenberg Editor Plugin, CVE-2025-48332

CVE, Research URL

CVE-2025-48332

Published on
Aug 14, 2025
Research Description
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in PublishPress Gutenberg Blocks advanced-gutenberg allows PHP Local File Inclusion.This issue affects Gutenberg Blocks: from n/a through <= 3.3.1.
Affected versions
max 3.3.2.
Status
vulnerable