← العودة للجدول
CVE-2026-10586
CVE-2026-10586 — The Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patte
📅 2026-06-04
🟠 High 🔥 No NVD Vulnerability Web CVSS 7.2

📋 الوصف الكامل

The Gutenberg Essential Blocks – Page Builder for Gutenberg Blocks & Patterns plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 6.1.3 via the `save_ai_generated_image()` function. This makes it possible for authenticated attackers, with Author-level access and above, to make web requests to arbitrary locations originating from the web app

💻 الأنظمة المتأثرة

WordPress

⚠️ نوع التهديد

Vulnerability

🔗 CVE ID

CVE-2026-10586

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v6.1.3

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←