CVE · Medium

CVE-2025-52712 — Post and Page Builder by BoldGrid – Visual Drag and Drop Editor [post-and-page-builder] < 1.27.9

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2025-52712 Post and Page Builder by BoldGrid – Visual Drag and Drop Editor [post-and-page-builder] < 1.27.9 Path Traversal: '.../...//' Medium 4.2 < 1.27.9 1.27.9 2025-07-22

CVE-2025-52712

The Post and Page Builder by BoldGrid plugin, which includes a visual drag-and-drop editor for WordPress, is susceptible to path traversal vulnerabilities across all versions up to 1.27.8. Authenticated users with at least Contributor permissions can exploit this flaw to access or manipulate files outside the intended directory scope.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.