Medium 4.3
2025-09-22< 2.1.3
CVE-2025-58252
Minimum safe version
2.1.3
Update to 2.1.3 or later to address 14 fixable vulnerabilities
CVE-2025-58252
Multiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via FancyBox JavaScript Library
CVE-2024-10872
CVE-2024-6489
WordPress Getwid – Gutenberg Blocks Plugin <= 2.0.10 is vulnerable to Broken Access Control
CVE-2024-3588
CVE-2024-1948
CVE-2023-6963
CVE-2023-6959
CVE-2023-6042
CVE-2023-1910
CVE-2023-1895
WordPress Getwid – Gutenberg Blocks plugin <= 1.7.4 - Cross-Site Request Forgery (CSRF) / Settings Change vulnerability
WordPress Getwid – Gutenberg Blocks plugin <= 1.7.4 - Authenticated Information Disclosure vulnerability