plugin

Brizy Vulnerabilities

70 known security issues reported for the Brizy WordPress plugin. Most recent disclosed Aug 1, 2026.

1 critical 10 high 23 medium 1 low

Running Brizy on your site? Check whether your installed version is affected.

Scan your site free

Brizy – Page Builder < 2.8.18 - Authenticated (Contributor+) Information Exposure

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to 2.8.18. This makes it possible for authenticated attackers, with contributor-level access and above, to extract sensitive user or configuration data.

CVSS:
4.3
Affected:
up to 2.8.18
Fixed in:
2.8.18
Disclosed:
Aug 1, 2026

CVE-2026-14195 on NVD →

Brizy - Page Builder <= 2.8.18 - Authenticated (Contributor+) Stored Cross-Site Scripting

medium

The Brizy - Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.8.18 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in...

CVSS:
6.4
Affected:
up to 2.8.18
Fixed in:
2.8.19
Disclosed:
Jul 27, 2026

CVE-2026-16069 on NVD →

Brizy - Page Builder <= 2.8.18 - Authenticated (Author+) Stored Cross-Site Scripting

medium

The Brizy - Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.8.18 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages...

CVSS:
6.4
Affected:
up to 2.8.18
Fixed in:
2.8.19
Disclosed:
Jul 27, 2026

CVE-2026-16068 on NVD →

Brizy - Page Builder <= 2.8.18 - Insecure Direct Object Reference to Authenticated (Contributor+) Template Type Update

medium

The Brizy - Page Builder plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions up to, and including, 2.8.18. This is due to a missing capability check and lack of integer casting on the template_id parameter in the setTemplateType() function, allowing any authenticated user to reference and...

CVSS:
4.3
Affected:
up to 2.8.18
Fixed in:
2.8.19
Disclosed:
Jul 27, 2026

CVE-2026-16070 on NVD →

Brizy – Page Builder <= 2.8.11 - Unauthenticated Stored Cross-Site Scripting via FileUpload Field Value

high

The Brizy – Page Builder plugin for WordPress is vulnerable to Unauthenticated Stored Cross-Site Scripting in all versions up to, and including, 2.8.11 This is due to a combination of missing nonce verification for unauthenticated form submissions, insufficient handling of FileUpload fields when no file is uploaded, an...

CVSS:
7.2
Affected:
up to 2.8.11
Fixed in:
2.8.12
Disclosed:
May 1, 2026

CVE-2026-5324 on NVD →

Brizy <= 2.7.23 - Missing Authorization

medium

The Brizy plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in versions up to, and including, 2.7.23. This makes it possible for authenticated attackers, with contributor-level access and above, to perform an unauthorized action.

CVSS:
4.3
Affected:
up to 2.7.23
Fixed in:
2.7.24
Disclosed:
Feb 22, 2026

CVE-2026-32408 on NVD →

Brizy – Page Builder <= 2.7.16 - Authenticated (Contributor+) Sensitive Information Exposure via get_users Function

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.7.16 via the get_users() function. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive data including email addresses and ha...

CVSS:
6.5
Affected:
up to 2.7.16
Fixed in:
2.7.17
Disclosed:
Dec 12, 2025

CVE-2025-0969 on NVD →

Brizy <= 2.7.12 - Missing Authorization

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on a function in all versions up to, and including, 2.7.12. This makes it possible for authenticated attackers, with Contributor-level access and above, to perform an unauthorized action.

CVSS:
4.3
Affected:
up to 2.7.12
Fixed in:
2.7.13
Disclosed:
Sep 3, 2025

CVE-2025-58594 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.7.13

unknown

[en] Missing Authorization vulnerability in themefusecom Brizy allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Brizy: from n/a through 2.7.12.

Affected:
up to 2.7.13
Fixed in:
2.7.13
Disclosed:
Sep 3, 2025

CVE-2025-58594 on NVD →

Brizy <= 2.6.20 - Missing Authorization to Unauthenticated Limited File Upload

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to limited file uploads due to missing authorization on process_external_asset_urls function as well as missing path validation in store_file function in all versions up to, and including, 2.6.20. This makes it possible for unauthenticated attackers to upload...

CVSS:
5.3
Affected:
up to 2.6.20
Fixed in:
2.6.21
Disclosed:
Jul 28, 2025

CVE-2025-4370 on NVD →

Brizy &#8211; Page Builder [brizy] <= 2.6.17 (unfixed + closed)

unknown

[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in themefusecom Brizy. This issue affects Brizy: from n/a through 2.6.14.

Affected:
up to 2.6.17
Fix:
No patched version reported
Disclosed:
Apr 10, 2025

CVE-2025-32198 on NVD →

Brizy <= 2.7.7 - Authenticated (Contributor+) Stored Cross-Site Scripting

medium

The Brizy plugin for WordPress is vulnerable to Stored Cross-Site Scripting in versions up to, and including, 2.7.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will...

CVSS:
6.4
Affected:
up to 2.7.7
Fixed in:
2.7.8
Disclosed:
Apr 4, 2025

CVE-2025-32198 on NVD →

Brizy – Page Builder <= 2.6.8 - Authenticated (Author+) Stored Cross-Site Scripting via SVG File Upload

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 2.6.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inje...

CVSS:
6.4
Affected:
up to 2.6.8
Fixed in:
2.6.9
Disclosed:
Feb 12, 2025

CVE-2024-10322 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.6.5 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'storeUploads' function in all versions up to, and including, 2.6.4. This makes it possible for authenticated attackers, with Contributor-level access and above, to upload arbitrary file...

Affected:
up to 2.6.5
Fixed in:
2.6.5
Disclosed:
Feb 12, 2025

CVE-2024-10960 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.6.9 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 2.6.8 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to...

Affected:
up to 2.6.9
Fixed in:
2.6.9
Disclosed:
Feb 12, 2025

CVE-2024-10322 on NVD →

Brizy – Page Builder <= 2.6.4 - Authenticated (Contributor+) Arbitrary File Upload via storeUploads

critical

The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'storeUploads' function in all versions up to, and including, 2.6.4. This makes it possible for authenticated attackers, with Contributor-level access and above, to upload arbitrary files on...

CVSS:
9.9
Affected:
up to 2.6.4
Fixed in:
2.6.5
Disclosed:
Feb 11, 2025

CVE-2024-10960 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.5.2 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.5.1. This is due to missing or incorrect nonce validation on form submissions. This makes it possible for unauthenticated attackers to submit forms intended for public use as another us...

Affected:
up to 2.5.2
Fixed in:
2.5.2
Disclosed:
Aug 8, 2024

CVE-2024-6254 on NVD →

Brizy – Page Builder <= 2.5.1 - Cross-Site Request Forgery

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.5.1. This is due to missing or incorrect nonce validation on form submissions. This makes it possible for unauthenticated attackers to submit forms intended for public use as another user vi...

CVSS:
4.3
Affected:
up to 2.5.1
Fixed in:
2.5.2
Disclosed:
Aug 7, 2024

CVE-2024-6254 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.45 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file extension validation in the validateImageContent function called via storeImages in all versions up to, and including, 2.4.43. This makes it possible for authenticated attackers, with contributor access and ab...

Affected:
up to 2.4.45
Fixed in:
2.4.45
Disclosed:
Jul 18, 2024

CVE-2024-3242 on NVD →

Brizy – Page Builder <= 2.4.44 - Authenticated (Contributor+) Arbitrary File Upload

high

The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file extension validation in the validateImageContent function called via storeImages in all versions up to, and including, 2.4.43. This makes it possible for authenticated attackers, with contributor access and above,...

CVSS:
8.8
Affected:
up to 2.4.44
Fixed in:
2.4.45
Disclosed:
Jul 17, 2024

CVE-2024-3242 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.45 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'update_item' function in all versions up to, and including, 2.4.44. This makes it possible for authenticated attackers, with contributor access and above, to modify the content...

Affected:
up to 2.4.45
Fixed in:
2.4.45
Disclosed:
Jul 16, 2024

CVE-2024-1937 on NVD →

Brizy – Page Builder <= 2.4.44 - Missing Authorization to Authenticated (Contributor+) Post Modification

high

The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'update_item' function in all versions up to, and including, 2.4.44. This makes it possible for authenticated attackers, with contributor access and above, to modify the content of a...

CVSS:
7.1
Affected:
up to 2.4.44
Fixed in:
2.4.45
Disclosed:
Jul 15, 2024

CVE-2024-1937 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.44 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Link To' field of multiple widgets in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attack...

Affected:
up to 2.4.44
Fixed in:
2.4.44
Disclosed:
Jun 5, 2024

CVE-2024-3667 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.44 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level...

Affected:
up to 2.4.44
Fixed in:
2.4.44
Disclosed:
Jun 5, 2024

CVE-2024-1161 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.44 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form name values in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages...

Affected:
up to 2.4.44
Fixed in:
2.4.44
Disclosed:
Jun 5, 2024

CVE-2024-2087 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.44 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's contact form widget error message and redirect URL in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied error messages. This makes it possi...

Affected:
up to 2.4.44
Fixed in:
2.4.44
Disclosed:
Jun 5, 2024

CVE-2024-1164 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.42 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post content in all versions up to, and including, 2.4.41 due to insufficient input sanitization performed only on the client side and insufficient output escaping. This makes it possible for authenticated attackers, wit...

Affected:
up to 2.4.42
Fixed in:
2.4.42
Disclosed:
Jun 5, 2024

CVE-2024-1940 on NVD →

Brizy – Page Builder <= 2.4.43 - Authenticated(Contributor+) Stored Cross-Site Scripting via Form Functionality

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's contact form widget error message and redirect URL in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied error messages. This makes it possible f...

CVSS:
6.4
Affected:
up to 2.4.43
Fixed in:
2.4.44
Disclosed:
Jun 4, 2024

CVE-2024-1164 on NVD →

Brizy – Page Builder <= 2.4.43 - Unauthenticated Stored Cross-Site Scripting via Form

high

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the form name values in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that...

CVSS:
7.2
Affected:
up to 2.4.43
Fixed in:
2.4.44
Disclosed:
Jun 4, 2024

CVE-2024-2087 on NVD →

Brizy – Page Builder <= 2.4.43 - Authenticated (Contributor+) Store Cross-Site Scripting via Widget Link To URL

high

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Link To' field of multiple widgets in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers,...

CVSS:
7.4
Affected:
up to 2.4.43
Fixed in:
2.4.44
Disclosed:
Jun 4, 2024

CVE-2024-3667 on NVD →

Brizy – Page Builder <= 2.4.43 - Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Attributes

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level and...

CVSS:
6.4
Affected:
up to 2.4.43
Fixed in:
2.4.44
Disclosed:
Jun 4, 2024

CVE-2024-1161 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.44 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized plugin setting update due to a missing capability check on the functions action_request_disable, action_change_template, and action_request_enable in all versions up to, and including, 2.4.43. This makes it possible for authenticated attac...

Affected:
up to 2.4.44
Fixed in:
2.4.44
Disclosed:
May 23, 2024

CVE-2024-3711 on NVD →

Brizy – Page Builder <= 2.4.43 - Missing Authorization

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to unauthorized plugin setting update due to a missing capability check on the functions action_request_disable, action_change_template, and action_request_enable in all versions up to, and including, 2.4.43. This makes it possible for authenticated attackers,...

CVSS:
4.3
Affected:
up to 2.4.43
Fixed in:
2.4.44
Disclosed:
May 22, 2024

CVE-2024-3711 on NVD →

Brizy – Page Builder <= 2.4.41 - Authenticated(Contributor+) Stored Cross-Site Scripting

high

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via post content in all versions up to, and including, 2.4.41 due to insufficient input sanitization performed only on the client side and insufficient output escaping. This makes it possible for authenticated attackers, with con...

CVSS:
7.1
Affected:
up to 2.4.41
Fixed in:
2.4.42
Disclosed:
May 6, 2024

CVE-2024-1940 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.41 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown URL parameter in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher,...

Affected:
up to 2.4.41
Fixed in:
2.4.41
Disclosed:
Mar 13, 2024

CVE-2024-1291 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.41 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's block upload in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contr...

Affected:
up to 2.4.41
Fixed in:
2.4.41
Disclosed:
Mar 13, 2024

CVE-2024-1296 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.41 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the storeImages function in all versions up to, and including, 2.4.40. This makes it possible for authenticated attackers, with contributor access or above, to upload arbitrary files on the...

Affected:
up to 2.4.41
Fixed in:
2.4.41
Disclosed:
Mar 13, 2024

CVE-2024-1311 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.41 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the embedded media custom block in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or abov...

Affected:
up to 2.4.41
Fixed in:
2.4.41
Disclosed:
Mar 13, 2024

CVE-2024-1293 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.41 (closed)

unknown

[en] The Brizy – Page Builder plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.4.39 via the 'id'. This makes it possible for authenticated attackers, with contributor-level access and above, to upload files to arbitrary locations on the server

Affected:
up to 2.4.41
Fixed in:
2.4.41
Disclosed:
Feb 24, 2024

CVE-2024-1165 on NVD →

Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Arbitrary File Upload

high

The Brizy – Page Builder plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the storeImages function in all versions up to, and including, 2.4.40. This makes it possible for authenticated attackers, with contributor access or above, to upload arbitrary files on the affec...

CVSS:
8.8
Affected:
up to 2.4.40
Fixed in:
2.4.41
Disclosed:
Feb 23, 2024

CVE-2024-1311 on NVD →

Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Stored Cross-Site Scripting

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown URL parameter in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher, to in...

CVSS:
6.4
Affected:
up to 2.4.40
Fixed in:
2.4.41
Disclosed:
Feb 23, 2024

CVE-2024-1291 on NVD →

Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Stored Cross-Site Scripting

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the embedded media custom block in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or above, to...

CVSS:
6.4
Affected:
up to 2.4.40
Fixed in:
2.4.41
Disclosed:
Feb 23, 2024

CVE-2024-1293 on NVD →

Brizy – Page Builder <= 2.4.40 - Authenticated (Contributor+) Stored Cross-Site Scripting

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's block upload in all versions up to, and including, 2.4.40 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributo...

CVSS:
6.4
Affected:
up to 2.4.40
Fixed in:
2.4.41
Disclosed:
Feb 23, 2024

CVE-2024-1296 on NVD →

Brizy – Page Builder <= 2.4.39 - Authenticated (Contributor+) Directory Traversal

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 2.4.39 via the 'id'. This makes it possible for authenticated attackers, with contributor-level access and above, to upload files to arbitrary locations on the server

CVSS:
4.3
Affected:
up to 2.4.40
Fixed in:
2.4.41
Disclosed:
Feb 23, 2024

CVE-2024-1165 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.30 (closed)

unknown

[en] Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Brizy.Io Brizy – Page Builder allows Stored XSS.This issue affects Brizy – Page Builder: from n/a through 2.4.29.

Affected:
up to 2.4.30
Fixed in:
2.4.30
Disclosed:
Dec 29, 2023

CVE-2023-51396 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.30 (closed)

unknown

Update the WordPress Brizy – Page Builder plugin to the latest available version (at least 2.4.30). Unknown discovered and reported this Cross Site Scripting (XSS) vulnerability in WordPress Brizy – Page Builder Plugin. This could allow a malicious actor to inject malicious scripts, such as redirects, advertisements, a...

Affected:
up to 2.4.30
Fixed in:
2.4.30
Disclosed:
Nov 9, 2023

Brizy <= 2.4.29 - Cross-Site Scripting

medium

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 2.4.29 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributo...

CVSS:
6.4
Affected:
up to 2.4.29
Fixed in:
2.4.30
Disclosed:
Nov 6, 2023

CVE-2023-51396 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.30 (closed)

unknown

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 2.4.29 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributo...

Affected:
up to 2.4.30
Fixed in:
2.4.30
Disclosed:
Nov 6, 2023

Brizy &#8211; Page Builder [brizy] < 1.0.126 (closed)

unknown

[en] The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_administrator() function in versions up to, and including, 1.0.125. This makes it possible for authenticated attackers to access and interact with available AJAX functions.

Affected:
up to 1.0.126
Fixed in:
1.0.126
Disclosed:
Oct 20, 2023

CVE-2020-36714 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.19 (closed)

unknown

[en] The Brizy Page Builder plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.4.18. This is due to an implicit trust of user-supplied IP addresses in an 'X-Forwarded-For' HTTP header for the purpose of validating allowed IP addresses against a Maintenance Mode whitelist. Supp...

Affected:
up to 2.4.19
Fixed in:
2.4.19
Disclosed:
Jun 9, 2023

CVE-2023-2897 on NVD →

Brizy Page Builder <= 2.4.18 - IP Address Spoofing to Protection Mechanism Bypass

low

The Brizy Page Builder plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 2.4.18. This is due to an implicit trust of user-supplied IP addresses in an 'X-Forwarded-For' HTTP header for the purpose of validating allowed IP addresses against a Maintenance Mode whitelist. Supplying...

CVSS:
3.7
Affected:
up to 2.4.18
Fixed in:
2.4.19
Disclosed:
May 31, 2023

CVE-2023-2897 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.2 (closed)

unknown

[en] The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element content, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks

Affected:
up to 2.4.2
Fixed in:
2.4.2
Disclosed:
Jun 27, 2022

CVE-2022-2041 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.4.2 (closed)

unknown

[en] The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element URL, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks

Affected:
up to 2.4.2
Fixed in:
2.4.2
Disclosed:
Jun 27, 2022

CVE-2022-2040 on NVD →

Brizy Page Builder <= 2.4.1 - Authenticated Stored Cross-Site Scripting via Element URL

medium

The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element URL, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks

CVSS:
5.4
Affected:
up to 2.4.2
Fixed in:
2.4.2
Disclosed:
Jun 21, 2022

CVE-2022-2040 on NVD →

Brizy Page Builder <= 2.4.1 - Authenticated Stored Cross-Site Scripting via Element Content

medium

The Brizy WordPress plugin before 2.4.2 does not sanitise and escape some element content, which could allow users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks

CVSS:
5.4
Affected:
up to 2.4.2
Fixed in:
2.4.2
Disclosed:
Jun 21, 2022

CVE-2022-2041 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.3.12 (closed)

unknown

[en] The Brizy Page Builder plugin <= 2.3.11 for WordPress was vulnerable to stored XSS by lower-privileged users such as a subscribers. It was possible to add malicious JavaScript to a page by modifying the request sent to update the page via the brizy_update_item AJAX action and adding JavaScript to the data paramete...

Affected:
up to 2.3.12
Fixed in:
2.3.12
Disclosed:
Oct 14, 2021

CVE-2021-38344 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.3.12 (closed)

unknown

[en] The Brizy Page Builder plugin <= 2.3.11 for WordPress allowed authenticated users to upload executable files to a location of their choice using the brizy_create_block_screenshot AJAX action. The file would be named using the id parameter, which could be prepended with "../" to perform directory traversal, and the...

Affected:
up to 2.3.12
Fixed in:
2.3.12
Disclosed:
Oct 14, 2021

CVE-2021-38346 on NVD →

Brizy &#8211; Page Builder [brizy] < 2.3.12 (closed)

unknown

[en] The Brizy Page Builder plugin <= 2.3.11 for WordPress used an incorrect authorization check that allowed any logged-in user accessing any endpoint in the wp-admin directory to modify the content of any existing post or page created with the Brizy editor. An identical issue was found by another researcher in Brizy...

Affected:
up to 2.3.12
Fixed in:
2.3.12
Disclosed:
Oct 14, 2021

CVE-2021-38345 on NVD →

Brizy Page Builder <= 2.3.11 - Authenticated File Upload and Path Traversal

high

The Brizy Page Builder plugin <= 2.3.11 for WordPress allowed authenticated users to upload executable files to a location of their choice using the brizy_create_block_screenshot AJAX action. The file would be named using the id parameter, which could be prepended with "../" to perform directory traversal, and the file...

CVSS:
8.8
Affected:
up to 2.3.11
Fixed in:
2.3.12
Disclosed:
Oct 13, 2021

CVE-2021-38346 on NVD →

Brizy - Page Builder <= 2.3.11 - Stored Cross-Site Scripting

medium

The Brizy Page Builder plugin <= 2.3.11 for WordPress was vulnerable to stored XSS by lower-privileged users such as a subscribers. It was possible to add malicious JavaScript to a page by modifying the request sent to update the page via the brizy_update_item AJAX action and adding JavaScript to the data parameter, wh...

CVSS:
6.4
Affected:
up to 2.3.11
Fixed in:
2.3.12
Disclosed:
Oct 13, 2021

CVE-2021-38344 on NVD →

Brizy Page Builder <= 2.3.11 - Incorrect Authorization Checks Allowing Post Modification

high

The Brizy Page Builder plugin <= 2.3.11 for WordPress used an incorrect authorization check that allowed any logged-in user accessing any endpoint in the wp-admin directory to modify the content of any existing post or page created with the Brizy editor. An identical issue was found by another researcher in Brizy <= 1....

CVSS:
7.1
Affected:
up to 1.0.125, 1.0.127 – 2.3.11
Fixed in:
1.0.126
Disclosed:
Oct 13, 2020

CVE-2021-38345 on NVD →

Brizy &#8211; Page Builder [brizy] < 1.0.126 (closed)

unknown

Broken Access Control vulnerability discovered by NinTechNet in WordPress Brizy – Page Builder plugin (versions <= 1.0.125).

Affected:
up to 1.0.126
Fixed in:
1.0.126
Disclosed:
Jun 10, 2020

Brizy < 1.0.126 - Authorization Bypass to Settings Updates

high

The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_administrator() function in versions up to, and including, 1.0.125. This makes it possible for authenticated attackers to access and interact with available AJAX functions.

CVSS:
7.4
Affected:
up to 1.0.126
Fixed in:
1.0.126
Disclosed:
Jun 3, 2020

CVE-2020-36714 on NVD →

Brizy &#8211; Page Builder [brizy] < 1.0.126 (closed)

unknown

The Brizy plugin for WordPress is vulnerable to authorization bypass due to a incorrect capability check on the is_administrator() function in versions up to, and including, 1.0.125. This makes it possible for authenticated attackers to access and interact with available AJAX functions.

Affected:
up to 1.0.126
Fixed in:
1.0.126
Disclosed:
Jun 3, 2020

Brizy - Page Builder < 1.0.114 - Missing Authorization to Settings Update

medium

The Brizy - Page Builder plugin for WordPress is vulnerable to authorization bypass due to a missing capability check and direct file access to /brizy/admin/site-settings.php in versions up to 1.0.114. This makes it possible for unauthenticated attackers to access the settings page and make modifications to the site's...

CVSS:
6.5
Affected:
up to 1.0.114
Fixed in:
1.0.114
Disclosed:
Mar 5, 2020

Brizy &#8211; Page Builder [brizy] < 1.0.114 (closed)

unknown

Unauthenticated Site Settings Update vulnerability discovered by Riki Aji in WordPress Brizy – Page Builder plugin (versions <= 1.0.113).

Affected:
up to 1.0.114
Fixed in:
1.0.114
Disclosed:
Mar 5, 2020

Brizy &#8211; Page Builder [brizy] < 1.0.114 (closed)

unknown

The Brizy - Page Builder plugin for WordPress is vulnerable to authorization bypass due to a missing capability check and direct file access to /brizy/admin/site-settings.php in versions up to 1.0.114. This makes it possible for unauthenticated attackers to access the settings page and make modifications to the site's...

Affected:
up to 1.0.114
Fixed in:
1.0.114
Disclosed:
Mar 5, 2020

Brizy &#8211; Page Builder [brizy] < 2.6.21 (closed)

unknown
Affected:
up to 2.6.21
Fixed in:
2.6.21

CVE-2025-4370 on NVD →

Brizy &#8211; Page Builder [brizy] < 1.0.126 (closed)

unknown

The plugin does not properly check for access controls on AJAX calls, resulting in authenticated user with low privileges being able to gain access to the editor functions.

Affected:
up to 1.0.126
Fixed in:
1.0.126

Brizy &#8211; Page Builder [brizy] < 1.0.114 (closed)

unknown

Edit (WPscanTeam) The plugin fails to restrict access to the site settings page, allowing unauthenticated users to change them, such as site title, description as well as put XSS payload in the footer, leading to Unauthenticated Stored XSS issues. As we saw probes in the wild checking for the issue, we choose to...

Affected:
up to 1.0.114
Fixed in:
1.0.114

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database