THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-18062 (MEDIUM 6.4) — The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Identity Block Inner Image Content in all versions up to, and including, 3.7.8.1 due to insufficient input sanitization and output escaping. This m

[NVD] CVE-2026-18062 (MEDIUM 6.4) — The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Identity Block Inner Image Content in all versions up to, and including, 3.7.8.1 due to insufficient input sanitization and output escaping. This m

mednvdPublished 2026-08-01

CVE-2026-18062 CVSS: 6.4 MEDIUM Published: 2026-08-01T09:17:02.100

The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Identity Block Inner Image Content in all versions up to, and including, 3.7.8.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with c

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-18062