Brizy – Page Builder < 2.8.18 - Authenticated (Contributor+) Information Exposure
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 2.8.18. This makes it possible for authenticated attackers, with contributor-level access and above, to extract sensitive user or configuration data.
- CVSS:
- 4.3
- Affected:
- up to 2.8.18
- Fixed in:
- 2.8.18
- Disclosed:
- Aug 1, 2026
CVE-2026-14195 on NVD →
Brizy - Page Builder <= 2.8.18 - Authenticated (Contributor+) Stored Cross-Site Scripting
medium
The Brizy - Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.8.18 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in...
- CVSS:
- 6.4
- Affected:
- up to 2.8.18
- Fixed in:
- 2.8.19
- Disclosed:
- Jul 27, 2026
CVE-2026-16069 on NVD →
Brizy - Page Builder <= 2.8.18 - Authenticated (Author+) Stored Cross-Site Scripting
medium
The Brizy - Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.8.18 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages...
- CVSS:
- 6.4
- Affected:
- up to 2.8.18
- Fixed in:
- 2.8.19
- Disclosed:
- Jul 27, 2026
CVE-2026-16068 on NVD →
Brizy - Page Builder <= 2.8.18 - Insecure Direct Object Reference to Authenticated (Contributor+) Template Type Update
medium
The Brizy - Page Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 2.8.18. This is due to a missing capability check and lack of integer casting on the template_id parameter in the setTemplateType() function, allowing any authenticated user to reference and...
- CVSS:
- 4.3
- Affected:
- up to 2.8.18
- Fixed in:
- 2.8.19
- Disclosed:
- Jul 27, 2026
CVE-2026-16070 on NVD →
Brizy – Page Builder <= 2.8.11 - Unauthenticated Stored Cross-Site Scripting via FileUpload Field Value
high
The Brizy – Page Builder plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting in all versions up to, and including, 2.8.11 This is due to a combination of missing nonce verification for unauthenticated form submissions, insufficient handling of FileUpload fields when no file is uploaded, an...
- CVSS:
- 7.2
- Affected:
- up to 2.8.11
- Fixed in:
- 2.8.12
- Disclosed:
- May 1, 2026
CVE-2026-5324 on NVD →
Brizy <= 2.7.23 - Missing Authorization
medium
The Brizy plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 2.7.23. This makes it possible for authenticated attackers, with contributor-level access and above, to perform an unauthorized action.
- CVSS:
- 4.3
- Affected:
- up to 2.7.23
- Fixed in:
- 2.7.24
- Disclosed:
- Feb 22, 2026
CVE-2026-32408 on NVD →
Brizy – Page Builder <= 2.7.16 - Authenticated (Contributor+) Sensitive Information Exposure via get_users Function
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.7.16 via the get_users() function. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive data including email addresses and ha...
- CVSS:
- 6.5
- Affected:
- up to 2.7.16
- Fixed in:
- 2.7.17
- Disclosed:
- Dec 12, 2025
CVE-2025-0969 on NVD →
Brizy <= 2.7.12 - Missing Authorization
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 2.7.12. This makes it possible for authenticated attackers, with Contributor-level access and above, to perform an unauthorized action.
- CVSS:
- 4.3
- Affected:
- up to 2.7.12
- Fixed in:
- 2.7.13
- Disclosed:
- Sep 3, 2025
CVE-2025-58594 on NVD →
Brizy – Page Builder [brizy] < 2.7.13
unknown
[en] Missing Authorization vulnerability in themefusecom Brizy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Brizy: from n/a through 2.7.12.
- Affected:
- up to 2.7.13
- Fixed in:
- 2.7.13
- Disclosed:
- Sep 3, 2025
CVE-2025-58594 on NVD →
Brizy <= 2.6.20 - Missing Authorization to Unauthenticated Limited File Upload
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to limited file uploads due to missing authorization on process_external_asset_urls function as well as missing path validation in store_file function in all versions up to, and including, 2.6.20. This makes it possible for unauthenticated attackers to upload...
- CVSS:
- 5.3
- Affected:
- up to 2.6.20
- Fixed in:
- 2.6.21
- Disclosed:
- Jul 28, 2025
CVE-2025-4370 on NVD →
Brizy – Page Builder [brizy] <= 2.6.17 (unfixed + closed)
unknown
[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themefusecom Brizy. This issue affects Brizy: from n/a through 2.6.14.
- Affected:
- up to 2.6.17
- Fix:
- No patched version reported
- Disclosed:
- Apr 10, 2025
CVE-2025-32198 on NVD →
Brizy <= 2.7.7 - Authenticated (Contributor+) Stored Cross-Site Scripting
medium
The Brizy plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.7.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will...
- CVSS:
- 6.4
- Affected:
- up to 2.7.7
- Fixed in:
- 2.7.8
- Disclosed:
- Apr 4, 2025
CVE-2025-32198 on NVD →
Brizy – Page Builder <= 2.6.8 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 2.6.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inje...
- CVSS:
- 6.4
- Affected:
- up to 2.6.8
- Fixed in:
- 2.6.9
- Disclosed:
- Feb 12, 2025
CVE-2024-10322 on NVD →
Brizy – Page Builder [brizy] < 2.6.5 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'storeUploads' function in all versions up to, and including, 2.6.4. This makes it possible for authenticated attackers, with Contributor-level access and above, to upload arbitrary file...
- Affected:
- up to 2.6.5
- Fixed in:
- 2.6.5
- Disclosed:
- Feb 12, 2025
CVE-2024-10960 on NVD →
Brizy – Page Builder [brizy] < 2.6.9 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 2.6.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to...
- Affected:
- up to 2.6.9
- Fixed in:
- 2.6.9
- Disclosed:
- Feb 12, 2025
CVE-2024-10322 on NVD →
Brizy – Page Builder <= 2.6.4 - Authenticated (Contributor+) Arbitrary File Upload via storeUploads
critical
The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'storeUploads' function in all versions up to, and including, 2.6.4. This makes it possible for authenticated attackers, with Contributor-level access and above, to upload arbitrary files on...
- CVSS:
- 9.9
- Affected:
- up to 2.6.4
- Fixed in:
- 2.6.5
- Disclosed:
- Feb 11, 2025
CVE-2024-10960 on NVD →
Brizy – Page Builder [brizy] < 2.5.2 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.5.1. This is due to missing or incorrect nonce validation on form submissions. This makes it possible for unauthenticated attackers to submit forms intended for public use as another us...
- Affected:
- up to 2.5.2
- Fixed in:
- 2.5.2
- Disclosed:
- Aug 8, 2024
CVE-2024-6254 on NVD →
Brizy – Page Builder <= 2.5.1 - Cross-Site Request Forgery
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.5.1. This is due to missing or incorrect nonce validation on form submissions. This makes it possible for unauthenticated attackers to submit forms intended for public use as another user vi...
- CVSS:
- 4.3
- Affected:
- up to 2.5.1
- Fixed in:
- 2.5.2
- Disclosed:
- Aug 7, 2024
CVE-2024-6254 on NVD →
Brizy – Page Builder [brizy] < 2.4.45 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file extension validation in the validateImageContent function called via storeImages in all versions up to, and including, 2.4.43. This makes it possible for authenticated attackers, with contributor access and ab...
- Affected:
- up to 2.4.45
- Fixed in:
- 2.4.45
- Disclosed:
- Jul 18, 2024
CVE-2024-3242 on NVD →
Brizy – Page Builder <= 2.4.44 - Authenticated (Contributor+) Arbitrary File Upload
high
The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file extension validation in the validateImageContent function called via storeImages in all versions up to, and including, 2.4.43. This makes it possible for authenticated attackers, with contributor access and above,...
- CVSS:
- 8.8
- Affected:
- up to 2.4.44
- Fixed in:
- 2.4.45
- Disclosed:
- Jul 17, 2024
CVE-2024-3242 on NVD →
Brizy – Page Builder [brizy] < 2.4.45 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'update_item' function in all versions up to, and including, 2.4.44. This makes it possible for authenticated attackers, with contributor access and above, to modify the content...
- Affected:
- up to 2.4.45
- Fixed in:
- 2.4.45
- Disclosed:
- Jul 16, 2024
CVE-2024-1937 on NVD →
Brizy – Page Builder <= 2.4.44 - Missing Authorization to Authenticated (Contributor+) Post Modification
high
The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'update_item' function in all versions up to, and including, 2.4.44. This makes it possible for authenticated attackers, with contributor access and above, to modify the content of a...
- CVSS:
- 7.1
- Affected:
- up to 2.4.44
- Fixed in:
- 2.4.45
- Disclosed:
- Jul 15, 2024
CVE-2024-1937 on NVD →
Brizy – Page Builder [brizy] < 2.4.44 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Link To' field of multiple widgets in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attack...
- Affected:
- up to 2.4.44
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 5, 2024
CVE-2024-3667 on NVD →
Brizy – Page Builder [brizy] < 2.4.44 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level...
- Affected:
- up to 2.4.44
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 5, 2024
CVE-2024-1161 on NVD →
Brizy – Page Builder [brizy] < 2.4.44 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form name values in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages...
- Affected:
- up to 2.4.44
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 5, 2024
CVE-2024-2087 on NVD →
Brizy – Page Builder [brizy] < 2.4.44 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's contact form widget error message and redirect URL in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied error messages. This makes it possi...
- Affected:
- up to 2.4.44
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 5, 2024
CVE-2024-1164 on NVD →
Brizy – Page Builder [brizy] < 2.4.42 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post content in all versions up to, and including, 2.4.41 due to insufficient input sanitization performed only on the client side and insufficient output escaping. This makes it possible for authenticated attackers, wit...
- Affected:
- up to 2.4.42
- Fixed in:
- 2.4.42
- Disclosed:
- Jun 5, 2024
CVE-2024-1940 on NVD →
Brizy – Page Builder <= 2.4.43 - Authenticated(Contributor+) Stored Cross-Site Scripting via Form Functionality
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's contact form widget error message and redirect URL in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied error messages. This makes it possible f...
- CVSS:
- 6.4
- Affected:
- up to 2.4.43
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 4, 2024
CVE-2024-1164 on NVD →
Brizy – Page Builder <= 2.4.43 - Unauthenticated Stored Cross-Site Scripting via Form
high
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form name values in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that...
- CVSS:
- 7.2
- Affected:
- up to 2.4.43
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 4, 2024
CVE-2024-2087 on NVD →
Brizy – Page Builder <= 2.4.43 - Authenticated (Contributor+) Store Cross-Site Scripting via Widget Link To URL
high
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Link To' field of multiple widgets in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers,...
- CVSS:
- 7.4
- Affected:
- up to 2.4.43
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 4, 2024
CVE-2024-3667 on NVD →
Brizy – Page Builder <= 2.4.43 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level and...
- CVSS:
- 6.4
- Affected:
- up to 2.4.43
- Fixed in:
- 2.4.44
- Disclosed:
- Jun 4, 2024
CVE-2024-1161 on NVD →
Brizy – Page Builder [brizy] < 2.4.44 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized plugin setting update due to a missing capability check on the functions action_request_disable, action_change_template, and action_request_enable in all versions up to, and including, 2.4.43. This makes it possible for authenticated attac...
- Affected:
- up to 2.4.44
- Fixed in:
- 2.4.44
- Disclosed:
- May 23, 2024
CVE-2024-3711 on NVD →
Brizy – Page Builder <= 2.4.43 - Missing Authorization
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized plugin setting update due to a missing capability check on the functions action_request_disable, action_change_template, and action_request_enable in all versions up to, and including, 2.4.43. This makes it possible for authenticated attackers,...
- CVSS:
- 4.3
- Affected:
- up to 2.4.43
- Fixed in:
- 2.4.44
- Disclosed:
- May 22, 2024
CVE-2024-3711 on NVD →
Brizy – Page Builder <= 2.4.41 - Authenticated(Contributor+) Stored Cross-Site Scripting
high
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post content in all versions up to, and including, 2.4.41 due to insufficient input sanitization performed only on the client side and insufficient output escaping. This makes it possible for authenticated attackers, with con...
- CVSS:
- 7.1
- Affected:
- up to 2.4.41
- Fixed in:
- 2.4.42
- Disclosed:
- May 6, 2024
CVE-2024-1940 on NVD →
Brizy – Page Builder [brizy] < 2.4.41 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown URL parameter in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher,...
- Affected:
- up to 2.4.41
- Fixed in:
- 2.4.41
- Disclosed:
- Mar 13, 2024
CVE-2024-1291 on NVD →
Brizy – Page Builder [brizy] < 2.4.41 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's block upload in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contr...
- Affected:
- up to 2.4.41
- Fixed in:
- 2.4.41
- Disclosed:
- Mar 13, 2024
CVE-2024-1296 on NVD →
Brizy – Page Builder [brizy] < 2.4.41 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the storeImages function in all versions up to, and including, 2.4.40. This makes it possible for authenticated attackers, with contributor access or above, to upload arbitrary files on the...
- Affected:
- up to 2.4.41
- Fixed in:
- 2.4.41
- Disclosed:
- Mar 13, 2024
CVE-2024-1311 on NVD →
Brizy – Page Builder [brizy] < 2.4.41 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the embedded media custom block in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or abov...
- Affected:
- up to 2.4.41
- Fixed in:
- 2.4.41
- Disclosed:
- Mar 13, 2024
CVE-2024-1293 on NVD →
Brizy – Page Builder [brizy] < 2.4.41 (closed)
unknown
[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.4.39 via the 'id'. This makes it possible for authenticated attackers, with contributor-level access and above, to upload files to arbitrary locations on the server
- Affected:
- up to 2.4.41
- Fixed in:
- 2.4.41
- Disclosed:
- Feb 24, 2024
CVE-2024-1165 on NVD →
Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Arbitrary File Upload
high
The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the storeImages function in all versions up to, and including, 2.4.40. This makes it possible for authenticated attackers, with contributor access or above, to upload arbitrary files on the affec...
- CVSS:
- 8.8
- Affected:
- up to 2.4.40
- Fixed in:
- 2.4.41
- Disclosed:
- Feb 23, 2024
CVE-2024-1311 on NVD →
Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Stored Cross-Site Scripting
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown URL parameter in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to in...
- CVSS:
- 6.4
- Affected:
- up to 2.4.40
- Fixed in:
- 2.4.41
- Disclosed:
- Feb 23, 2024
CVE-2024-1291 on NVD →
Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Stored Cross-Site Scripting
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the embedded media custom block in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or above, to...
- CVSS:
- 6.4
- Affected:
- up to 2.4.40
- Fixed in:
- 2.4.41
- Disclosed:
- Feb 23, 2024
CVE-2024-1293 on NVD →
Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Stored Cross-Site Scripting
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's block upload in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributo...
- CVSS:
- 6.4
- Affected:
- up to 2.4.40
- Fixed in:
- 2.4.41
- Disclosed:
- Feb 23, 2024
CVE-2024-1296 on NVD →
Brizy – Page Builder <= 2.4.39 - Authenticated (Contributor+) Directory Traversal
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.4.39 via the 'id'. This makes it possible for authenticated attackers, with contributor-level access and above, to upload files to arbitrary locations on the server
- CVSS:
- 4.3
- Affected:
- up to 2.4.40
- Fixed in:
- 2.4.41
- Disclosed:
- Feb 23, 2024
CVE-2024-1165 on NVD →
Brizy – Page Builder [brizy] < 2.4.30 (closed)
unknown
[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brizy.Io Brizy – Page Builder allows Stored XSS.This issue affects Brizy – Page Builder: from n/a through 2.4.29.
- Affected:
- up to 2.4.30
- Fixed in:
- 2.4.30
- Disclosed:
- Dec 29, 2023
CVE-2023-51396 on NVD →
Brizy – Page Builder [brizy] < 2.4.30 (closed)
unknown
Update the WordPress Brizy – Page Builder plugin to the latest available version (at least 2.4.30).
Unknown discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Brizy – Page Builder Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, a...
- Affected:
- up to 2.4.30
- Fixed in:
- 2.4.30
- Disclosed:
- Nov 9, 2023
Brizy <= 2.4.29 - Cross-Site Scripting
medium
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 2.4.29 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributo...
- CVSS:
- 6.4
- Affected:
- up to 2.4.29
- Fixed in:
- 2.4.30
- Disclosed:
- Nov 6, 2023
CVE-2023-51396 on NVD →
Brizy – Page Builder [brizy] < 2.4.30 (closed)
unknown
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 2.4.29 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributo...
- Affected:
- up to 2.4.30
- Fixed in:
- 2.4.30
- Disclosed:
- Nov 6, 2023
Brizy – Page Builder [brizy] < 1.0.126 (closed)
unknown
[en] The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_administrator() function in versions up to, and including, 1.0.125. This makes it possible for authenticated attackers to access and interact with available AJAX functions.
- Affected:
- up to 1.0.126
- Fixed in:
- 1.0.126
- Disclosed:
- Oct 20, 2023
CVE-2020-36714 on NVD →
Brizy – Page Builder [brizy] < 2.4.19 (closed)
unknown
[en] The Brizy Page Builder plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.4.18. This is due to an implicit trust of user-supplied IP addresses in an 'X-Forwarded-For' HTTP header for the purpose of validating allowed IP addresses against a Maintenance Mode whitelist. Supp...
- Affected:
- up to 2.4.19
- Fixed in:
- 2.4.19
- Disclosed:
- Jun 9, 2023
CVE-2023-2897 on NVD →
Brizy Page Builder <= 2.4.18 - IP Address Spoofing to Protection Mechanism Bypass
low
The Brizy Page Builder plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.4.18. This is due to an implicit trust of user-supplied IP addresses in an 'X-Forwarded-For' HTTP header for the purpose of validating allowed IP addresses against a Maintenance Mode whitelist. Supplying...
- CVSS:
- 3.7
- Affected:
- up to 2.4.18
- Fixed in:
- 2.4.19
- Disclosed:
- May 31, 2023
CVE-2023-2897 on NVD →
Brizy – Page Builder [brizy] < 2.4.2 (closed)
unknown
[en] The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element content, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks
- Affected:
- up to 2.4.2
- Fixed in:
- 2.4.2
- Disclosed:
- Jun 27, 2022
CVE-2022-2041 on NVD →
Brizy – Page Builder [brizy] < 2.4.2 (closed)
unknown
[en] The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element URL, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks
- Affected:
- up to 2.4.2
- Fixed in:
- 2.4.2
- Disclosed:
- Jun 27, 2022
CVE-2022-2040 on NVD →
Brizy Page Builder <= 2.4.1 - Authenticated Stored Cross-Site Scripting via Element URL
medium
The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element URL, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks
- CVSS:
- 5.4
- Affected:
- up to 2.4.2
- Fixed in:
- 2.4.2
- Disclosed:
- Jun 21, 2022
CVE-2022-2040 on NVD →
Brizy Page Builder <= 2.4.1 - Authenticated Stored Cross-Site Scripting via Element Content
medium
The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element content, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks
- CVSS:
- 5.4
- Affected:
- up to 2.4.2
- Fixed in:
- 2.4.2
- Disclosed:
- Jun 21, 2022
CVE-2022-2041 on NVD →
Brizy – Page Builder [brizy] < 2.3.12 (closed)
unknown
[en] The Brizy Page Builder plugin <= 2.3.11 for WordPress was vulnerable to stored XSS by lower-privileged users such as a subscribers. It was possible to add malicious JavaScript to a page by modifying the request sent to update the page via the brizy_update_item AJAX action and adding JavaScript to the data paramete...
- Affected:
- up to 2.3.12
- Fixed in:
- 2.3.12
- Disclosed:
- Oct 14, 2021
CVE-2021-38344 on NVD →
Brizy – Page Builder [brizy] < 2.3.12 (closed)
unknown
[en] The Brizy Page Builder plugin <= 2.3.11 for WordPress allowed authenticated users to upload executable files to a location of their choice using the brizy_create_block_screenshot AJAX action. The file would be named using the id parameter, which could be prepended with "../" to perform directory traversal, and the...
- Affected:
- up to 2.3.12
- Fixed in:
- 2.3.12
- Disclosed:
- Oct 14, 2021
CVE-2021-38346 on NVD →
Brizy – Page Builder [brizy] < 2.3.12 (closed)
unknown
[en] The Brizy Page Builder plugin <= 2.3.11 for WordPress used an incorrect authorization check that allowed any logged-in user accessing any endpoint in the wp-admin directory to modify the content of any existing post or page created with the Brizy editor. An identical issue was found by another researcher in Brizy...
- Affected:
- up to 2.3.12
- Fixed in:
- 2.3.12
- Disclosed:
- Oct 14, 2021
CVE-2021-38345 on NVD →
Brizy Page Builder <= 2.3.11 - Authenticated File Upload and Path Traversal
high
The Brizy Page Builder plugin <= 2.3.11 for WordPress allowed authenticated users to upload executable files to a location of their choice using the brizy_create_block_screenshot AJAX action. The file would be named using the id parameter, which could be prepended with "../" to perform directory traversal, and the file...
- CVSS:
- 8.8
- Affected:
- up to 2.3.11
- Fixed in:
- 2.3.12
- Disclosed:
- Oct 13, 2021
CVE-2021-38346 on NVD →
Brizy - Page Builder <= 2.3.11 - Stored Cross-Site Scripting
medium
The Brizy Page Builder plugin <= 2.3.11 for WordPress was vulnerable to stored XSS by lower-privileged users such as a subscribers. It was possible to add malicious JavaScript to a page by modifying the request sent to update the page via the brizy_update_item AJAX action and adding JavaScript to the data parameter, wh...
- CVSS:
- 6.4
- Affected:
- up to 2.3.11
- Fixed in:
- 2.3.12
- Disclosed:
- Oct 13, 2021
CVE-2021-38344 on NVD →
Brizy Page Builder <= 2.3.11 - Incorrect Authorization Checks Allowing Post Modification
high
The Brizy Page Builder plugin <= 2.3.11 for WordPress used an incorrect authorization check that allowed any logged-in user accessing any endpoint in the wp-admin directory to modify the content of any existing post or page created with the Brizy editor. An identical issue was found by another researcher in Brizy <= 1....
- CVSS:
- 7.1
- Affected:
- up to 1.0.125, 1.0.127 – 2.3.11
- Fixed in:
- 1.0.126
- Disclosed:
- Oct 13, 2020
CVE-2021-38345 on NVD →
Brizy – Page Builder [brizy] < 1.0.126 (closed)
unknown
Broken Access Control vulnerability discovered by NinTechNet in WordPress Brizy – Page Builder plugin (versions <= 1.0.125).
- Affected:
- up to 1.0.126
- Fixed in:
- 1.0.126
- Disclosed:
- Jun 10, 2020
Brizy < 1.0.126 - Authorization Bypass to Settings Updates
high
The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_administrator() function in versions up to, and including, 1.0.125. This makes it possible for authenticated attackers to access and interact with available AJAX functions.
- CVSS:
- 7.4
- Affected:
- up to 1.0.126
- Fixed in:
- 1.0.126
- Disclosed:
- Jun 3, 2020
CVE-2020-36714 on NVD →
Brizy – Page Builder [brizy] < 1.0.126 (closed)
unknown
The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_administrator() function in versions up to, and including, 1.0.125. This makes it possible for authenticated attackers to access and interact with available AJAX functions.
- Affected:
- up to 1.0.126
- Fixed in:
- 1.0.126
- Disclosed:
- Jun 3, 2020
Brizy - Page Builder < 1.0.114 - Missing Authorization to Settings Update
medium
The Brizy - Page Builder plugin for WordPress is vulnerable to authorization bypass due to a missing capability check and direct file access to /brizy/admin/site-settings.php in versions up to 1.0.114. This makes it possible for unauthenticated attackers to access the settings page and make modifications to the site's...
- CVSS:
- 6.5
- Affected:
- up to 1.0.114
- Fixed in:
- 1.0.114
- Disclosed:
- Mar 5, 2020
Brizy – Page Builder [brizy] < 1.0.114 (closed)
unknown
Unauthenticated Site Settings Update vulnerability discovered by Riki Aji in WordPress Brizy – Page Builder plugin (versions <= 1.0.113).
- Affected:
- up to 1.0.114
- Fixed in:
- 1.0.114
- Disclosed:
- Mar 5, 2020
Brizy – Page Builder [brizy] < 1.0.114 (closed)
unknown
The Brizy - Page Builder plugin for WordPress is vulnerable to authorization bypass due to a missing capability check and direct file access to /brizy/admin/site-settings.php in versions up to 1.0.114. This makes it possible for unauthenticated attackers to access the settings page and make modifications to the site's...
- Affected:
- up to 1.0.114
- Fixed in:
- 1.0.114
- Disclosed:
- Mar 5, 2020
Brizy – Page Builder [brizy] < 2.6.21 (closed)
unknown
- Affected:
- up to 2.6.21
- Fixed in:
- 2.6.21
CVE-2025-4370 on NVD →
Brizy – Page Builder [brizy] < 1.0.126 (closed)
unknown
The plugin does not properly check for access controls on AJAX calls, resulting in authenticated user with low privileges being able to gain access to the editor functions.
- Affected:
- up to 1.0.126
- Fixed in:
- 1.0.126
Brizy – Page Builder [brizy] < 1.0.114 (closed)
unknown
Edit (WPscanTeam)
The plugin fails to restrict access to the site settings page, allowing unauthenticated users to change them, such as site title, description as well as put XSS payload in the footer, leading to Unauthenticated Stored XSS issues.
As we saw probes in the wild checking for the issue, we choose to...
- Affected:
- up to 1.0.114
- Fixed in:
- 1.0.114