Search Results (8 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-54739 2 Posimyth, Wordpress 2 Nexter Blocks, Wordpress 2025-08-15 5.3 Medium
Missing Authorization vulnerability in POSIMYTH Nexter Blocks allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Nexter Blocks: from n/a through 4.5.4.
CVE-2024-56294 2 Posimyth, Wordpress 2 Nexter Blocks, Wordpress 2025-07-13 6.4 Medium
Missing Authorization vulnerability in POSIMYTH Nexter Blocks allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Nexter Blocks: from n/a through 4.0.7.
CVE-2024-56246 2 Posimyth, Wordpress 2 Nexter Blocks, Wordpress 2025-07-12 6.5 Medium
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in POSIMYTH Nexter Blocks allows DOM-Based XSS.This issue affects Nexter Blocks: from n/a through 4.0.4.
CVE-2023-45658 2 Posimyth, Wordpress 2 Nexter, Wordpress 2025-07-12 7.6 High
Missing Authorization vulnerability in POSIMYTH Nexter.This issue affects Nexter: from n/a through 2.0.3.
CVE-2024-33572 1 Posimyth 1 Nexter Blocks 2024-11-26 4.3 Medium
Missing Authorization vulnerability in POSIMYTH The Plus Blocks for Block Editor | Gutenberg.This issue affects The Plus Blocks for Block Editor | Gutenberg: from n/a through 3.2.5.
CVE-2023-45751 1 Posimyth 1 Nexter Extension 2024-11-21 9.1 Critical
Improper Control of Generation of Code ('Code Injection') vulnerability in POSIMYTH Nexter Extension.This issue affects Nexter Extension: from n/a through 2.0.3.
CVE-2023-45750 1 Posimyth 1 Nexter Extension 2024-11-21 7.1 High
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in POSIMYTH Nexter Extension plugin <= 2.0.3 versions.
CVE-2023-45657 1 Posimyth 1 Nexter 2024-11-21 9.8 Critical
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in POSIMYTH Nexter allows SQL Injection.This issue affects Nexter: from n/a through 2.0.3.