Description
WordPress Plugin Essential Blocks-Page Builder Gutenberg Blocks, Patterns & Templates is prone to multiple security bypass vulnerabilities. Exploiting these issues may allow attackers to perform otherwise restricted actions and subsequently save/obtain plugin settings, or obtain plugin template information. WordPress Plugin Essential Blocks-Page Builder Gutenberg Blocks, Patterns & Templates version 4.0.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.0.7 or latest
References
Related Vulnerabilities
PHP Out-of-bounds Read Vulnerability (CVE-2016-6294)
WordPress Plugin Infusionsoft Gravity Forms Add-on Arbitrary File Upload (1.5.10)
WordPress Plugin Video Sidebar Widgets Cross-Site Scripting (6.1)
Drupal Core 7.x Multiple Vulnerabilities (7.0 - 7.33)
WordPress Plugin Answer My Question Multiple Cross-Site Scripting Vulnerabilities (1.1)