plugin

Bricksbuilder Vulnerabilities

1 known security issue reported for the Bricksbuilder WordPress plugin. Most recent disclosed Jun 21, 2024.

1 medium

Running Bricksbuilder on your site? Check whether your installed version is affected.

Scan your site free

Bricks Builder <= 1.9.8 - Insecure Direct Object Reference

medium

The Bricks Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.9.8 via the postId parameter due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with Contributor-level access and above, to modify posts...

CVSS:
4.3
Affected:
up to 1.9.8
Fixed in:
1.9.9
Disclosed:
Jun 21, 2024

CVE-2024-4874 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database