WordPress Essential Blocks for Gutenberg plugin <= 3.8.5 - Broken Access Control
CVE-2022-47594
6.5MEDIUM
Key Information:
- Vendor
WordPress
- Vendor
- CVE Published:
- 13 December 2024
What is CVE-2022-47594?
The vulnerability in WPDeveloper Essential Blocks for Gutenberg arises from a missing authorization check, leading to improperly configured access control security levels. This flaw can be exploited to permit unauthorized users to access restricted functionalities of the plugin, ultimately jeopardizing the security integrity of WordPress sites utilizing these blocks. It is crucial for administrators to assess their plugin versions and apply necessary updates to mitigate potential risks associated with this vulnerability.
Affected Version(s)
Essential Blocks for Gutenberg <= 3.8.5