CVE · Medium

CVE-2026-24982 — Spectra Legacy – Gutenberg Blocks [ultimate-addons-for-gutenberg] < 2.19.18

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2026-24982 Spectra Legacy – Gutenberg Blocks [ultimate-addons-for-gutenberg] < 2.19.18 Missing Authorization Medium 5.3 < 2.19.18 2.19.18 2026-01-17

CVE-2026-24982

The Spectra Gutenberg Blocks plugin for WordPress contains a security flaw that allows unauthorized individuals to carry out certain actions without proper authorization. The issue stems from the absence of capability checks on a specific function, affecting all versions up to and including 2.19.17.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.