VYPR

Stackable

by WordPress

CVEs (2)

  • CVE-2024-12117MedJan 22, 2025
    risk 0.42cvss 6.4epss 0.00

    The Stackable – Page Builder Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter of the Button block in all versions up to, and including, 3.13.11 due to insufficient input sanitization and output escaping. This makes it…

  • CVE-2025-60094MedSep 26, 2025
    risk 0.28cvss 4.3epss 0.00

    Missing Authorization vulnerability in Benjamin Intal Stackable stackable-ultimate-gutenberg-blocks allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Stackable: from n/a through <= 3.18.1.