The Bold Page Builder tool for WordPress has a security issue called Stored Cross-Site Scripting. This happens in versions up to and including 5.3.2 because it doesn’t properly clean up and protect the information that is put into it. This allows people who are logged in and have at least contributor-level access to add harmful code to a page. When someone visits the page with the added code, it will run whatever instructions were put in.