CVE-2023-35875: WordPress Gutenverse – Gutenberg Blocks – Page Builder for Site Editor plugin <= 1.8.5 - Broken Access Control vulnerability
Published Dec 13, 2024
·Updated
Missing Authorization vulnerability in Jegstudio Gutenverse gutenverse allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Gutenverse: from n/a through <= 1.8.5.
Affected Software
1 affected component
Jegstudio Gutenverse<=1.8.5
Remediation
Information
Update the WordPress Gutenverse plugin to the latest available version (at least 1.8.6).
Event History
Dec 13, 2024
CVE Published
via MITRE·02:23 PM
Data Sourced
via MITRE·02:23 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-35875?
CVE-2023-35875 is considered a high-severity vulnerability due to its potential to exploit incorrectly configured access control security levels.
2
How do I fix CVE-2023-35875?
To fix CVE-2023-35875, update the Jegstudio Gutenverse plugin to version 1.8.6 or later.
3
What are the affected versions for CVE-2023-35875?
CVE-2023-35875 affects all versions of Jegstudio Gutenverse up to and including 1.8.5.
4
What type of vulnerability is CVE-2023-35875?
CVE-2023-35875 is a Missing Authorization vulnerability.
5
Which products are affected by CVE-2023-35875?
CVE-2023-35875 affects the Gutenverse plugin specifically for Jegstudio and WordPress.