Bold Page Builder

43 known CVEs 40K+ active installs

Scan My Site Free

UNKNOWN: 43
Known Vulnerabilities 43
CVE-2025-15267 UNKNOWN EPSS 0.1%
Published 2026-02-07 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_accordion_item shortcode in all versions up to, and including, 5.5.7 due to insufficient
CVE-2025-13463 UNKNOWN EPSS 0.2%
Published 2026-02-07 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Post Grid component in all versions up to, and including, 5.5.3 due to insufficient input sanitization a
CVE-2025-12803 UNKNOWN EPSS 0.2%
Published 2026-02-07 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin 'bt_bb_tabs' shortcode in all versions up to, and including, 5.5.1 due to insufficient input sani
CVE-2025-12159 UNKNOWN EPSS 0.1%
Published 2026-02-07 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_raw_content shortcode in all versions up to, and including, 5.4.8 due to insufficient inp
CVE-2025-7730 UNKNOWN EPSS 0.1%
Published 2025-10-23 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘percentage’ parameter in all versions up to, and including, 5.4.5 due to insufficient input sanitizatio
CVE-2024-54382 UNKNOWN EPSS 0.8%
Published 2024-12-16 · Affected: *
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Path Traversal.This issue affects Bold Page Builde
CVE-2024-54382 UNKNOWN EPSS 0.8%
Published 2024-12-16 · Affected: *
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Path Traversal.This issue affects Bold Page Builde
CVE-2024-54382 UNKNOWN EPSS 0.8%
Published 2024-12-16 · Affected: *
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Path Traversal.This issue affects Bold Page Builde
CVE-2024-54382 UNKNOWN EPSS 0.8%
Published 2024-12-16 · Affected: *
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Path Traversal.This issue affects Bold Page Builde
CVE-2024-53801 UNKNOWN EPSS 0.3%
Published 2024-12-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-53801 UNKNOWN EPSS 0.3%
Published 2024-12-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-53801 UNKNOWN EPSS 0.3%
Published 2024-12-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-53801 UNKNOWN EPSS 0.3%
Published 2024-12-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-50417 UNKNOWN EPSS 0.8%
Published 2024-11-19 · Affected: *
Missing Authorization vulnerability in boldthemes Bold Page Builder bold-page-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Bold Page Builder: from
CVE-2024-50417 UNKNOWN EPSS 0.8%
Published 2024-11-19 · Affected: *
Missing Authorization vulnerability in boldthemes Bold Page Builder bold-page-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Bold Page Builder: from
CVE-2024-50417 UNKNOWN EPSS 0.8%
Published 2024-11-19 · Affected: *
Missing Authorization vulnerability in boldthemes Bold Page Builder bold-page-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Bold Page Builder: from
CVE-2024-50417 UNKNOWN EPSS 0.8%
Published 2024-11-19 · Affected: *
Missing Authorization vulnerability in boldthemes Bold Page Builder bold-page-builder allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Bold Page Builder: from
CVE-2024-47298 UNKNOWN EPSS 0.2%
Published 2024-10-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-47298 UNKNOWN EPSS 0.2%
Published 2024-10-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-47298 UNKNOWN EPSS 0.2%
Published 2024-10-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-47298 UNKNOWN EPSS 0.2%
Published 2024-10-06 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-47391 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-47391 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-47391 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-47391 UNKNOWN EPSS 0.2%
Published 2024-10-05 · Affected: *
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in boldthemes Bold Page Builder bold-page-builder allows Stored XSS.This issue affects Bold Page Buil
CVE-2024-2736 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTML Tags in all versions up to, and including, 4.8.8 due to insufficient input sanitization and output esca
CVE-2024-2736 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via HTML Tags in all versions up to, and including, 4.8.8 due to insufficient input sanitization and output esca
CVE-2024-2735 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Price List' element in all versions up to, and including, 4.8.8 due to insufficient input sanitization
CVE-2024-2735 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'Price List' element in all versions up to, and including, 4.8.8 due to insufficient input sanitization
CVE-2024-2734 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's AI features all versions up to, and including, 4.8.8 due to insufficient input sanitization and
CVE-2024-2734 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's AI features all versions up to, and including, 4.8.8 due to insufficient input sanitization and
CVE-2024-2733 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's "Separator" element in all versions up to, and including, 4.8.8 due to insufficient input sanit
CVE-2024-2733 UNKNOWN EPSS 0.4%
Published 2024-04-10 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's "Separator" element in all versions up to, and including, 4.8.8 due to insufficient input sanit
CVE-2024-3267 UNKNOWN EPSS 0.3%
Published 2024-04-09 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_price_list shortcode in all versions up to, and including, 4.8.8 due to insufficient inpu
CVE-2024-3267 UNKNOWN EPSS 0.3%
Published 2024-04-09 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's bt_bb_price_list shortcode in all versions up to, and including, 4.8.8 due to insufficient inpu
CVE-2024-3266 UNKNOWN EPSS 0.4%
Published 2024-04-09 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribute of widgets in all versions up to, and including, 4.8.8 due to insufficient input sanitizat
CVE-2024-3266 UNKNOWN EPSS 0.4%
Published 2024-04-09 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the URL attribute of widgets in all versions up to, and including, 4.8.8 due to insufficient input sanitizat
CVE-2024-1160 UNKNOWN EPSS 0.3%
Published 2024-02-13 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Icon Link in all versions up to, and including, 4.8.0 due to insufficient input sanitization an
CVE-2024-1160 UNKNOWN EPSS 0.3%
Published 2024-02-13 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Icon Link in all versions up to, and including, 4.8.0 due to insufficient input sanitization an
CVE-2024-1159 UNKNOWN EPSS 0.3%
Published 2024-02-13 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 4.8.0 due to insufficient input sanitization
CVE-2024-1159 UNKNOWN EPSS 0.3%
Published 2024-02-13 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 4.8.0 due to insufficient input sanitization
CVE-2024-1157 UNKNOWN EPSS 0.3%
Published 2024-02-13 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's button URL in all versions up to, and including, 4.8.0 due to insufficient input sanitization a
CVE-2024-1157 UNKNOWN EPSS 0.3%
Published 2024-02-13 · Affected: *
The Bold Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's button URL in all versions up to, and including, 4.8.0 due to insufficient input sanitization a

Is Bold Page Builder running on your site?

A free scan detects your plugins and flags any that match these CVEs.

Scan My Site Free