CVE Database /
CVE-2025-52713
CVE · Medium
CVE-2025-52713 — Post and Page Builder by BoldGrid – Visual Drag and Drop Editor [post-and-page-builder] < 1.27.9
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2025-52713
|
Post and Page Builder by BoldGrid – Visual Drag and Drop Editor [post-and-page-builder] < 1.27.9 |
Server-Side Request Forgery (SSRF) |
Medium
6.4
|
< 1.27.9
|
1.27.9 |
2025-06-19 |
—
|
CVE-2025-52713
The Post and Page Builder by BoldGrid plugin, up to version 1.27.8, is susceptible to Server-Side Request Forgery vulnerabilities for users with at least Contributor permissions. Authenticated attackers can exploit these flaws to send unauthorized requests to external sites, potentially leading to the retrieval or alteration of internal data.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings