CVE · Medium

CVE-2025-52711 — Post and Page Builder by BoldGrid – Visual Drag and Drop Editor [post-and-page-builder] < 1.27.9

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-52711 Post and Page Builder by BoldGrid – Visual Drag and Drop Editor [post-and-page-builder] < 1.27.9 Cross-Site Request Forgery (CSRF) Medium 4.3 < 1.27.9 1.27.9 2025-06-19

CVE-2025-52711

The BoldGrid Post and Page Builder plugin, used in WordPress sites, has a security weakness that allows malicious individuals to deceive administrators into taking actions they shouldn't be able to take. This flaw arises from inadequate checks on certain function calls, allowing unauthorized access through manipulated links or other tactics. Versions of the plugin up to 1.27.8 are affected by this vulnerability.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.