Bricks

Vulnerabilities 10Slug bricksTheme page →

Minimum safe version

2.3

Update to 2.3 or later to address 10 fixable vulnerabilities

High 7.5
2025-07-29< 2.0

Bricks Builder <= 1.12.4 - Unauthenticated SQL Injection via `p` Parameter

High 7.1
2025-02-27< 1.9.7

WordPress Bricks Builder Theme <= 1.9.6.1 is vulnerable to Privilege Escalation

Medium 5.4
2024-09-16< 1.10.2

WordPress Bricks Builder Theme <= 1.10.1 is vulnerable to Cross Site Scripting (XSS)

Medium 4.3
2024-08-19< 1.8.2

WordPress Bricks Builder Theme <= 1.8.1 is vulnerable to Cross Site Request Forgery (CSRF)

N/A
2024-02-13< 1.9.6.1

Bricks <= 1.9.6 - Unauthenticated Remote Code Execution