PT-2026-43622 · Tom+1 · Generateblocks

·

CVE-2026-48877

·

Published

2026-05-27

·

Updated

2026-05-27

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions GenerateBlocks versions prior to 2.1.1
Description An issue in the GenerateBlocks plugin for WordPress allows authenticated attackers with Contributor-level access and above to retrieve embedded sensitive user or configuration data through the insertion of sensitive information into sent data.
Recommendations Update GenerateBlocks to version 2.1.1 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-48877

Affected Products

Generateblocks