The Bold Page Builder plugin used with WordPress has a security issue called Stored Cross-Site Scripting, which can affect versions up to 5.1.1. This is because the plugin does not properly clean and protect the information it receives and displays. This means that a person with contributor-level access or higher can add harmful web scripts to pages, which will be activated when other users view those pages.