WordPress Blocksy Vulnerabilities
Wordpress Blocksy vulnerabilities.
Vulnerability Published:
🗓️ Published
- Anytime
Sort By:
🗓️ Published Date
- Descending
Blocksy <= 2.1.41 - Authenticated (Contributor+) PHP Object Injection via Deserialization of Untrusted Data via 'blocksy_meta' REST API Field
CVE-2026-8365WordPressBlocksy8.8HIGHStored Cross-Site Scripting Vulnerability in Blocksy Theme by WordPress
CVE-2026-2583WordPressBlocksy6.4MEDIUMAuthenticated Arbitrary File Upload Vulnerability in Blocksy Companion Plugin for WordPress
CVE-2025-12846WordPressBlocksy Companion8.8HIGHStored Cross-Site Scripting Vulnerability in Blocksy Companion Plugin for WordPress
CVE-2025-12475WordPressBlocksy Companion6.4MEDIUMStored Cross-Site Scripting Vulnerability in Blocksy Companion Plugin for WordPress
CVE-2025-9565WordPressBlocksy Companion6.4MEDIUMStored XSS Vulnerability in CreativeThemes Blocksy Theme
CVE-2025-55713WordPressBlocksy5.9MEDIUMMissing Authorization Vulnerability in CreativeThemes Blocksy Product
CVE-2025-47465WordPressBlocksy4.9MEDIUMCross-Site Request Forgery Vulnerability in Blocksy Theme by CreativeThemes
CVE-2024-37469WordPressBlocksy5.4MEDIUMStored Cross-Site Scripting Vulnerability Affects Blocksy Theme
CVE-2024-11420WordPressBlocksy6.4MEDIUMFreemius SDK Vulnerabilities Affect Hundreds of WordPress Plugins and Themes
CVE-2022-4974WordPressYasr – Yet Another Sta...6.3MEDIUMReflected Cross-Site Scripting Vulnerability in Blocksy Theme
CVE-2024-5439WordPressBlocksy6.4MEDIUMBlocksy Companion SSRF Vulnerability Affects Versions n/a through 2.0.42
CVE-2024-35633WordPressBlocksy Companion4.4MEDIUMStored Cross-Site Scripting Vulnerability in Blocksy Theme
CVE-2024-4943WordPressBlocksy6.4MEDIUMStored Cross-Site Scripting Vulnerability in Blocksy Theme
CVE-2024-4158WordPressBlocksy6.4MEDIUMStored Cross-Site Scripting Vulnerability in Blocksy Companion Plugin for WordPress
CVE-2024-4487WordPressBlocksy Companion6.4MEDIUMStored Cross-Site Scripting Vulnerability in Blocksy Theme Affects All Versions Up to 2.0.39
CVE-2024-3747WordPressBlocksy6.4MEDIUMBlocksy Stored XSS Vulnerability
CVE-2024-32961WordPressBlocksy6.5MEDIUMBlocksy CSRF Vulnerability Affects Users
CVE-2024-31382WordPressBlocksy4.3MEDIUMBlocksy Companion CSRF Vulnerability Affects Users
CVE-2024-31932WordPressBlocksy Companion5.4MEDIUMStored Cross-Site Scripting Vulnerability in Blocksy Companion Plugin for WordPress
CVE-2024-2392WordPressBlocksy Companion6.4MEDIUMStored Cross-Site Scripting Vulnerability in Blocksy Theme Affects User Supplied Attributes
CVE-2024-1767WordPressBlocksy6.4MEDIUMBlocksy Stored XSS Vulnerability
CVE-2024-24871WordPressBlocksy6.5MEDIUMBlocksy Companion < 1.8.82 - Subscriber+ Draft Post Access
CVE-2023-1911WordpressBlocksy Companion👾🟡4.3MEDIUMWordPress Blocksy Companion Plugin <= 1.8.67 is vulnerable to Cross Site Scripting (XSS)
CVE-2023-23898WordPressBlocksy Companion5.5MEDIUM