CVE-2025-52712
- EPSS 0.06%
- Published 14.08.2025 10:34:04
- Last modified 14.08.2025 13:11:53
Path Traversal vulnerability in BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor allows Path Traversal. This issue affects Post and Page Builder by BoldGrid – Visual Drag and Drop Editor: from n/a through 1.27.8.
CVE-2025-52711
- EPSS 0.02%
- Published 20.06.2025 15:15:32
- Last modified 02.07.2025 09:15:25
Cross-Site Request Forgery (CSRF) vulnerability in BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor allows Cross Site Request Forgery.This issue affects Post and Page Builder by BoldGrid – Visual Drag and Drop Editor: from n/a...
CVE-2025-52713
- EPSS 0.04%
- Published 20.06.2025 15:15:32
- Last modified 23.06.2025 20:16:40
Server-Side Request Forgery (SSRF) vulnerability in BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor allows Server Side Request Forgery. This issue affects Post and Page Builder by BoldGrid – Visual Drag and Drop Editor: from ...
CVE-2025-0859
- EPSS 0.12%
- Published 06.02.2025 10:15:08
- Last modified 19.03.2025 20:35:32
The Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.27.6 via the template_via_url() function. This makes it possible for authenticated attack...
CVE-2024-6848
- EPSS 1.25%
- Published 20.07.2024 12:15:02
- Last modified 20.03.2025 15:40:08
The Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via file uploads in all versions up to, and including, 1.26.6 due to insufficient input sanitization and output esca...
CVE-2024-4400
- EPSS 0.24%
- Published 16.05.2024 11:15:48
- Last modified 20.03.2025 20:10:54
The Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plguin for WordPress is vulnerable to Stored Cross-Site Scripting via an unknown parameter in versions up to, and including, 1.26.4 due to insufficient input sanitization and output ...
CVE-2024-2888
- EPSS 0.16%
- Published 26.03.2024 06:15:09
- Last modified 19.03.2025 19:02:10
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor allows Stored XSS.This issue affects Post and Page Builder by BoldGrid – Vi...
CVE-2023-25480
- EPSS 0.07%
- Published 06.10.2023 13:15:12
- Last modified 19.03.2025 18:02:26
Cross-Site Request Forgery (CSRF) vulnerability in BoldGrid Post and Page Builder by BoldGrid – Visual Drag and Drop Editor plugin <= 1.24.1 versions.