cleantalk
Vulnerabilities and Security Researches

The Plus Blocks for Block Editor | Gutenberg, CVE-2026-24377

CVE, Research URL

CVE-2026-24377

Published on
Jan 22, 2026
Research Description
Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in POSIMYTH Nexter Blocks the-plus-addons-for-block-editor allows Retrieve Embedded Sensitive Data.This issue affects Nexter Blocks: from n/a through <= 4.6.3.
Affected versions
max 4.6.4.
Status
vulnerable