Boletines de Vulnerabilidades |
CVE-2025-12134 |
|
| Software afectado | WORDPRESS |
| The ZoloBlocks – Gutenberg Block Editor Plugin with Advanced Blocks, Dynamic Content, Templates & Patterns plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the update_popup_status() function in all versions up to, and including, 2.3.11. This makes it possible for unauthenticated attackers to enable/disable popups. | |
Link: |
|
| https://nvd.nist.gov/vuln/detail/CVE-2025-12134 | |














