CVE-2023-27923: Vektor-Inc Vk Blocks

Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.

Cross-site scripting vulnerability in Tag edit function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and earlier allows a remote authenticated attacker to inject an arbitrary script.

Affected products

  • Vektor-Inc Vk Blocks: before 1.53.0.1 (fixed in 1.53.0.1)

Published 2023-05-23. Last modified 2026-06-17.