CVE-2025-62924: WordPress Post Grid and Gutenberg Blocks plugin <= 2.3.17 - Broken Access Control vulnerability
Missing Authorization vulnerability in PickPlugins Post Grid and Gutenberg Blocks post-grid allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Post Grid and Gutenberg Blocks: from n/a through <= 2.3.17.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-62924?
CVE-2025-62924 is classified as a medium severity vulnerability due to its potential impact on access control.
How do I fix CVE-2025-62924?
To fix CVE-2025-62924, update the PickPlugins Post Grid and Gutenberg Blocks plugin to version 2.3.18 or later.
What products are affected by CVE-2025-62924?
CVE-2025-62924 affects PickPlugins Post Grid and Gutenberg Blocks and WordPress Post Grid and Gutenberg Blocks plugin versions up to 2.3.17.
What type of vulnerability is CVE-2025-62924?
CVE-2025-62924 is a missing authorization vulnerability that exploits incorrectly configured access control levels.
Can CVE-2025-62924 be exploited remotely?
Yes, CVE-2025-62924 can be exploited remotely by attackers if proper access controls are not in place.