Medium 5.3
2025-09-22< 2.1.30
Cozy Blocks <= 2.1.29 - Unauthenticated Arbitrary Shortcode Execution
Minimum safe version
2.1.30
Update to 2.1.30 or later to address 7 fixable vulnerabilities
Cozy Blocks <= 2.1.29 - Unauthenticated Arbitrary Shortcode Execution
CVE-2025-47485
CVE-2025-30838
CVE-2024-50502
CVE-2024-50441
CVE-2024-47355
WordPress Cozy Addons for Elementor Plugin <= 1.2.3 is vulnerable to Cross Site Scripting (XSS)