cleantalk
Vulnerabilities and Security Researches

Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel – Combo Blocks, CVE-2025-66058

CVE, Research URL

CVE-2025-66058

Published on
Dec 18, 2025
Research Description
Missing Authorization vulnerability in PickPlugins Post Grid and Gutenberg Blocks allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Post Grid and Gutenberg Blocks: from n/a through 2.3.17.
Affected versions
max 2.3.17.
Status
vulnerable