The Gutenberg Blocks – ACF Blocks Suite plugin for WordPress has a security issue that allows attackers to inject harmful code into pages. This can happen because the plugin does not properly clean up the input and output of the code. This means that anyone with contributor-level access or higher can potentially run their own code on the website without permission.