PT-2026-30315 · Stellarwp · Kadence Blocks — Page Builder Toolkit For Gutenberg Editor
Lukasz Sobanski
·
Published
2026-04-04
·
Updated
2026-04-04
·
CVE-2026-2826
CVSS v3.1
4.3
Medium
| AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N |
The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.6.3. This is due to the plugin not properly verifying that a user has the
upload files capability in the process pattern REST API endpoint. This makes it possible for authenticated attackers, with contributor level access and above, to upload images to the WordPress Media Library by supplying remote image URLs that the server downloads and creates as media attachments.Fix
Missing Authorization
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Kadence Blocks — Page Builder Toolkit For Gutenberg Editor