Cozythemes

Cozy Blocks

10 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.19%
  • Veröffentlicht 01.08.2026 07:49:52
  • Zuletzt bearbeitet 12.08.2026 21:00:37

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'layoutCircle.alignment' Block Attribute in all versions up to, and including, 2...

  • EPSS 0.25%
  • Veröffentlicht 28.07.2026 12:36:32
  • Zuletzt bearbeitet 28.07.2026 16:07:15

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'postMeta.font.size' Block Attribute in all versions up to, and including, 2.2.1...

  • EPSS 0.25%
  • Veröffentlicht 24.07.2026 06:51:59
  • Zuletzt bearbeitet 24.07.2026 20:45:45

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'icon.view' Block Attribute in all versions up to, and including, 2.2.11 due to ...

  • EPSS 0.25%
  • Veröffentlicht 24.07.2026 06:51:58
  • Zuletzt bearbeitet 24.07.2026 20:45:45

The Cozy Blocks – Page Builder for Gutenberg Editor & FSE with 600+ Patterns, 58 Blocks & Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'cozyCustomFont' Block Attribute in all versions up to, and including, 2.2.11 du...

  • EPSS 0.22%
  • Veröffentlicht 22.09.2025 19:16:25
  • Zuletzt bearbeitet 23.04.2026 15:34:04

Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in CozyThemes Cozy Blocks cozy-addons allows Code Injection.This issue affects Cozy Blocks: from n/a through <= 2.1.29.

  • EPSS 0.34%
  • Veröffentlicht 07.05.2025 14:19:49
  • Zuletzt bearbeitet 23.04.2026 15:30:18

Missing Authorization vulnerability in CozyThemes Cozy Blocks cozy-addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Cozy Blocks: from n/a through <= 2.1.22.

  • EPSS 0.33%
  • Veröffentlicht 27.03.2025 10:55:22
  • Zuletzt bearbeitet 23.04.2026 15:27:10

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.1.6.

  • EPSS 0.28%
  • Veröffentlicht 28.10.2024 18:15:05
  • Zuletzt bearbeitet 23.04.2026 15:19:57

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.15.

  • EPSS 0.25%
  • Veröffentlicht 28.10.2024 13:15:07
  • Zuletzt bearbeitet 23.04.2026 15:20:04

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows DOM-Based XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.18.

  • EPSS 0.25%
  • Veröffentlicht 06.10.2024 11:15:14
  • Zuletzt bearbeitet 23.04.2026 15:19:13

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CozyThemes Cozy Blocks cozy-addons allows Stored XSS.This issue affects Cozy Blocks: from n/a through <= 2.0.11.