PT-2026-30315 · Stellarwp · Kadence Blocks — Page Builder Toolkit For Gutenberg Editor

Lukasz Sobanski

·

Published

2026-04-04

·

Updated

2026-04-04

·

CVE-2026-2826

CVSS v3.1

4.3

Medium

AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.6.3. This is due to the plugin not properly verifying that a user has the upload files capability in the process pattern REST API endpoint. This makes it possible for authenticated attackers, with contributor level access and above, to upload images to the WordPress Media Library by supplying remote image URLs that the server downloads and creates as media attachments.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-2826

Affected Products

Kadence Blocks — Page Builder Toolkit For Gutenberg Editor