Wpmet
Wpmet Gutenkit: vulnerabilidades y CVE
Wpmet Gutenkit tiene 7 vulnerabilidades publicadas, 5 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE7
Últimos 12 meses5
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-2573 | Media (6.4) | 0.26% | — | 3 sept 2026 | The GutenKit – Page Builder Blocks, Patterns, and Templates for Gutenberg Block Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘postBodyCss’ parameter in all versions up to, and… |
| CVE-2026-19698 | Baja (3.5) | 0.17% | — | 2 sept 2026 | The GutenKit WordPress plugin before 2.5.1 does not validate or escape style settings saved against a post before using them to build the CSS it outputs on the front end, allowing users with the Contributor role and… |
| CVE-2026-19699 | Baja (2.7) | 0.30% | — | 20 ago 2026 | The GutenKit WordPress plugin before 2.5.0 does not have a sufficient capability check on some of its REST API endpoints, allowing users with the Contributor role and above to retrieve mailing-list audience metadata… |
| CVE-2026-19697 | Media (6.8) | 0.43% | — | 20 ago 2026 | The GutenKit WordPress plugin before 2.5.0 does not sanitise uploaded SVG files on all of the upload paths it enables, allowing users with the file upload capability, such as Author, to upload a malicious SVG and… |
| CVE-2026-15827 | Media (5.3) | 0.54% | — | 23 jul 2026 | The GutenKit Blocks plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the /wp-json/gutenkit/v1/mailchimp/get/lists and /wp-json/gutenkit/v1/mailchimp/get/interests… |
| CVE-2025-46253 | Media (5.4) | 0.22% | — | 22 abr 2025 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ataur R GutenKit gutenkit-blocks-addon allows Stored XSS.This issue affects GutenKit: from n/a through <= 2.2.2. |
| CVE-2024-9234 | Crítica (9.8) | 10% | — | 11 oct 2024 | The GutenKit – Page Builder Blocks, Patterns, and Templates for Gutenberg Block Editor plugin for WordPress is vulnerable to arbitrary file uploads due to a missing capability check on the… |
Otros productos de Wpmet
Metform Elementor Contact Form Builder · 23Elements KIT Elementor Addons · 14Elementskit · 11WP Ultimate Review · 10Elementskit Elementor Addons · 10Fundengine · 8WP Social Login AND Register Social Counter · 5Elementskit Lite · 2Elementskit Elementor Addons Lite · 2Shopengine · 1Metform · 1WP Fundraising Donation AND Crowdfunding Platform · 1