CVE-2026-5324
Brizy – Page Builder
Minimum safe version
2.8.12
Update to 2.8.12 or later to address 38 fixable vulnerabilities
Brizy – Page Builder <= 2.7.16 - Authenticated (Contributor+) Sensitive Information Exposure via get_users Function
CVE-2026-32408
CVE-2025-58594
Brizy <= 2.6.20 - Missing Authorization to Unauthenticated Limited File Upload
CVE-2025-32198
CVE-2024-10960
CVE-2024-10322
CVE-2024-6254
CVE-2024-3242
CVE-2024-1937
CVE-2024-1161
CVE-2024-2087
CVE-2024-1164
CVE-2024-1940
CVE-2024-3667
CVE-2024-3711
CVE-2024-1293
CVE-2024-1311
CVE-2024-1296
CVE-2024-1165
CVE-2024-1291
WordPress Brizy – Page Builder Plugin <= 2.4.29 is vulnerable to Cross Site Scripting (XSS)
WordPress Brizy – Page Builder Plugin < 2.4.30 is vulnerable to Cross Site Scripting (XSS)
Brizy <= 2.4.29 - Cross-Site Scripting
CVE-2020-36714
CVE-2023-2897
Brizy - Page Builder < 1.0.114 - Missing Authorization to Settings Update
Brizy < 1.0.126 - Authorization Bypass to Settings Updates
Brizy - Page Builder < 1.0.114 - Unauthenticated Site Settings Update
Brizy - Page Builder < 1.0.126 - Improper Access Controls on AJAX Calls
CVE-2022-2041
CVE-2022-2040
WordPress Brizy – Page Builder plugin <= 1.0.113 - Unauthenticated Site Settings Update vulnerability
WordPress Brizy – Page Builder plugin <= 1.0.125 - Broken Access Control vulnerability
CVE-2021-38346
CVE-2021-38345
CVE-2021-38344