THREAT OPS › Threat News › [NVD] CVE-2026-18062 (MEDIUM 6.4) — The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Identity Block Inner Image Content in all versions up to, and including, 3.7.8.1 due to insufficient input sanitization and output escaping. This m
[NVD] CVE-2026-18062 (MEDIUM 6.4) — The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Identity Block Inner Image Content in all versions up to, and including, 3.7.8.1 due to insufficient input sanitization and output escaping. This m
CVE-2026-18062 CVSS: 6.4 MEDIUM Published: 2026-08-01T09:17:02.100
The Kadence Blocks — Page Builder Toolkit for Gutenberg Editor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Identity Block Inner Image Content in all versions up to, and including, 3.7.8.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with c
Indicators of compromise
- CVE-2026-18062cve
- 3.7.8.1ipv4
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-18062