Critical 9.8 Closed
2026-04-17< 2.7.7.1
CVE-2026-6443
CVE-2026-6443
WordPress Blog Designer - Post and Widget Plugin <= 2.5.1 is vulnerable to Broken Access Control
CVE-2022-4793
Blog Designer - Post and Widget <= 2.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode