WP Clinic
Entrar Registrarse

CVE · High

CVE-2023-6635 — Gutenberg Block Editor Toolkit – EditorsKit [block-options] < 1.40.4

CVE Vulnerabilidad Tipo Gravedad Afectadas Corregido en Publicado Estado
CVE-2023-6635 Gutenberg Block Editor Toolkit – EditorsKit [block-options] < 1.40.4 Carga de archivos sin restricción de tipo peligroso Alta 7,2 < 1.40.4 1.40.4 2023-12-16

CVE-2023-6635

Update the WordPress Gutenberg Block Editor Toolkit plugin to the latest available version (at least 1.40.4). István Márton discovered and reported this Arbitrary File Upload vulnerability in WordPress Gutenberg Block Editor Toolkit Plugin. This could allow a malicious actor to upload any type of file to your website. This can include backdoors which are then executed to gain further access to your website. This vulnerability has been fixed in version 1.40.4. Have additional information or questions about this entry? Get in touch.

Descripción técnica mostrada en el idioma original de la fuente (inglés).

Fuente: Patchstack

Escanea tu sitio WordPress gratis

Sin registro, sin tarjeta de crédito — ingresa tu URL y obtén un informe de seguridad en segundos.