Medium 5.4
2026-04-23< 3.5.6
CVE-2026-2951
Minimum safe version
3.5.6
Update to 3.5.6 or later to address 11 fixable vulnerabilities
CVE-2026-2951
CVE-2025-58680
CVE-2025-58783
Gutentor – Gutenberg Blocks – Page Builder for Gutenberg Editor <= 3.4.8 - Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Widgets
Multiple Plugins <= (Various Versions) - Authenticated (Contributor+) Stored DOM-Based Cross-Site Scripting via Magnific Popups JavaScript Library
Gutentor <= 3.4.6 - Authenticated (Administrator+) SQL Injection
CVE-2025-22293
CVE-2024-10178
CVE-2024-5417
CVE-2024-43308
WordPress Gutentor - Gutenberg Blocks - Page Builder for Gutenberg Editor Plugin <= 1.0.2 is vulnerable to Cross Site Scripting (XSS)