Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in CozyThemes Cozy Blocks allows Code Injection. This issue affects Cozy Blocks: from n/a through 2.1.29.
Metrics
Affected Vendors & Products
Fixes
Solution
Update the WordPress Cozy Blocks plugin to the latest available version (at least 2.1.30).
Workaround
No workaround given by the vendor.
References
History
Mon, 22 Sep 2025 18:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in CozyThemes Cozy Blocks allows Code Injection. This issue affects Cozy Blocks: from n/a through 2.1.29. | |
Title | WordPress Cozy Blocks Plugin <= 2.1.29 - Content Injection Vulnerability | |
Weaknesses | CWE-80 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-09-22T18:25:56.508Z
Reserved: 2025-09-17T18:01:03.000Z
Link: CVE-2025-59573

No data.

Status : Received
Published: 2025-09-22T19:16:25.583
Modified: 2025-09-22T19:16:25.583
Link: CVE-2025-59573

No data.

No data.