Known vulnerabilities in Post and Page Builder by BoldGrid – Visual Drag and Drop Editor
Post and Page Builder is a standalone plugin which adds functionality to the existing TinyMCE Editor.
10Reported vulnerabilities
6.5Highest CVSS score
1.27.13Latest version
50,000+Active installs
What to do now
Update Post and Page Builder by BoldGrid – Visual Drag and Drop Editor to 1.27.10 or later.
10 of these have a fixed version available. Updating resolves them.
Reported vulnerabilities
| CVE | Severity | Exploit probability |
Affected versions | Fixed in | Published |
|---|---|---|---|---|---|
| CVE-2024-6848 | Medium | 0.5% | Before 1.26.7 | 1.26.7 |
July 20, 2024 |
| CVE-2025-0859 | Medium | 0.7% | Before 1.27.7 | 1.27.7 |
February 6, 2025 |
| CVE-2025-22759 | Medium | 0.3% | 1.27.5 and earlier | 1.27.6 |
January 14, 2025 |
| CVE-2024-2888 | Medium | 0.3% | 1.26.2 and earlier | 1.26.3 |
March 25, 2024 |
| CVE-2025-52713 | Medium | 0.2% | 1.27.8 and earlier | 1.27.9 |
June 19, 2025 |
| CVE-2024-4400 | Medium | 0.3% | Before 1.26.5 | 1.26.5 |
May 16, 2024 |
| CVE-2025-69345 | Medium | 0.2% | 1.27.9 and earlier | 1.27.10 |
January 5, 2026 |
| CVE-2025-52712 | Medium | 0.2% | 1.27.8 and earlier | 1.27.9 |
July 22, 2025 |
| CVE-2025-52711 | Medium | 0.1% | 1.27.8 and earlier | 1.27.9 |
June 19, 2025 |
| CVE-2023-25480 | Medium | 0.3% | 1.24.1 and earlier | 1.24.2 |
August 22, 2023 |