cleantalk
Vulnerabilities and Security Researches

Gutenberg Blocks by Kadence Blocks – Page Builder Features, c6740fcd89eec6859575a35447a9f34f025b145c

Published on
Aug 09, 2023
Research Description
Kadence Blocks — Page Builder Toolkit for Gutenberg Editor [kadence-blocks] < 3.1.11 WordPress Gutenberg Blocks by Kadence Blocks Plugin <= 3.1.10 is vulnerable to Arbitrary File Upload Update the WordPress Gutenberg Blocks by Kadence Blocks plugin to the latest available version (at least 3.1.11). An unknown person discovered and reported this Arbitrary File Upload vulnerability in WordPress Gutenberg Blocks by Kadence Blocks Plugin. This could allow a malicious actor to upload any type of file to your website. This can include backdoors which are then executed to gain further access to your website. This vulnerability has been fixed in version 3.1.11.
Affected versions
max 3.1.11.
Status
vulnerable