Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
wpxpo postx - gutenberg blocks for post grid vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv3
CVE-2021-24661
The PostX – Gutenberg Blocks for Post Grid WordPress plugin prior to 2.4.10, with Saved Templates Addon enabled, allows users with Contributor roles or higher to read password-protected or private post contents the user is otherwise unable to read, given the post ID.
Wpxpo Postx - Gutenberg Blocks For Post Grid
6.5
CVSSv3
CVE-2021-24652
The PostX – Gutenberg Blocks for Post Grid WordPress plugin prior to 2.4.10 performs incorrect checks before allowing any logged in user to perform some ajax based requests, allowing any user to modify, delete or add ultp_options values.
Wpxpo Postx - Gutenberg Blocks For Post Grid
5.4
CVSSv3
CVE-2021-24659
The PostX – Gutenberg Blocks for Post Grid WordPress plugin prior to 2.4.10 allows users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks via the plugin's block.
Wpxpo Postx - Gutenberg Blocks For Post Grid
5.4
CVSSv3
CVE-2021-24660
The PostX – Gutenberg Blocks for Post Grid WordPress plugin prior to 2.4.10, with Saved Templates Addon enabled, allows users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks via the plugin's shortcode.
Wpxpo Postx - Gutenberg Blocks For Post Grid
NA
CVE-2024-31246
Missing Authorization vulnerability in Post Grid Team by WPXPO PostX – Gutenberg Blocks for Post Grid.This issue affects PostX – Gutenberg Blocks for Post Grid: from n/a up to and including 3.2.3.
NA
CVE-2024-32564
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Post Grid Team by WPXPO PostX – Gutenberg Blocks for Post Grid allows Stored XSS.This issue affects PostX – Gutenberg Blocks for Post Grid: from n/a up to a...
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-0044
remote code execution
CVE-2024-37080
CVE-2024-5182
CVE-2024-4390
CVE-2024-6100
brute force
CVE-2021-47581
file inclusion
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started