Vulnerability found in Beaver Builder – WordPress Page Builder

The Beaver Builder plugin for WordPress is not secure and can be affected by a type of cyber attack called DOM-Based Reflected Cross-Site Scripting. This can happen if a website includes a ‘playground.wordpress.net’ link and the plugin does not properly clean up or protect against harmful scripts. This means that people who are not logged in or authorized can add their own malicious code to a webpage and cause harm if a user clicks on a certain link.

Detected in:

Beaver Builder – WordPress Page Builder fixed vulnerable versions: >= * <= 2.7.4.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.