Remote Code Execution in Blocksy Companion Pro Plugin by Blocksy
CVE-2026-57624
10CRITICAL
What is CVE-2026-57624?
The Blocksy Companion Pro plugin is susceptible to an unauthenticated Remote Code Execution (RCE) vulnerability in versions 2.1.46 and earlier. This flaw allows attackers to execute arbitrary code on the server without authentication, potentially leading to significant security breaches. It is crucial for users to update to the latest version to mitigate the risks associated with this vulnerability.
Affected Version(s)
Blocksy Companion Pro <= 2.1.46