Cozythemes

Cozy Blocks

13 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.27%
  • Veröffentlicht 05.10.2026 18:08:36
  • Zuletzt bearbeitet 06.10.2026 15:04:25

Authorization Bypass Through User-Controlled Key vulnerability in CozyThemes Cozy Blocks cozy-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cozy Blocks: from n/a through 2.2.23.

  • EPSS 0.39%
  • Veröffentlicht 01.09.2026 04:27:53
  • Zuletzt bearbeitet 01.09.2026 20:47:54

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 700+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 2.2.17. This is due to the plugin not properly verify...

  • EPSS 0.2%
  • Veröffentlicht 25.08.2026 02:26:49
  • Zuletzt bearbeitet 26.08.2026 16:19:05

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 700+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via cozyHoverEffect Block Attribute in all versions up to, and including, 2.2.16 due...

  • EPSS 0.19%
  • Veröffentlicht 01.08.2026 07:49:52
  • Zuletzt bearbeitet 12.08.2026 21:00:37

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'layoutCircle.alignment' Block Attribute in all versions up to, and including, 2...

  • EPSS 0.25%
  • Veröffentlicht 28.07.2026 12:36:32
  • Zuletzt bearbeitet 28.07.2026 16:07:15

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'postMeta.font.size' Block Attribute in all versions up to, and including, 2.2.1...

  • EPSS 0.25%
  • Veröffentlicht 24.07.2026 06:51:59
  • Zuletzt bearbeitet 24.07.2026 20:45:45

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'icon.view' Block Attribute in all versions up to, and including, 2.2.11 due to ...

  • EPSS 0.25%
  • Veröffentlicht 24.07.2026 06:51:58
  • Zuletzt bearbeitet 24.07.2026 20:45:45

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'cozyCustomFont' Block Attribute in all versions up to, and including, 2.2.11 du...

  • EPSS 0.22%
  • Veröffentlicht 22.09.2025 19:16:25
  • Zuletzt bearbeitet 30.09.2026 23:10:00

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in CozyThemes Cozy Blocks cozy-addons allows Code Injection.This issue affects Cozy Blocks: from n/a through <= 2.1.29.

  • EPSS 0.34%
  • Veröffentlicht 07.05.2025 14:19:49
  • Zuletzt bearbeitet 23.04.2026 15:30:18

Missing Authorization vulnerability in CozyThemes Cozy Blocks cozy-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cozy Blocks: from n/a through <= 2.1.22.

  • EPSS 0.33%
  • Veröffentlicht 27.03.2025 10:55:22
  • Zuletzt bearbeitet 23.04.2026 15:27:10

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.1.6.