Input validation vulnerability in Gutenberg Blocks by Kadence Blocks – Page Builder Features 3.1.11

The Kadence Blocks plugin for WordPress has a security issue that could allow unauthenticated attackers to upload any type of file to the server the plugin is installed on. This potentially could lead to remote code execution, and is present in versions of the plugin up to and including 3.1.10. The vulnerability is caused by a lack of validation to check the type of files being uploaded.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.