CVE-2023-27925: Vektor-Inc Vk Blocks
Medium severity, CVSS 5.4. EPSS: 0.6% chance of exploitation in the next 30 days.
Cross-site scripting vulnerability in Post function of VK Blocks 1.53.0.1 and earlier and VK Blocks Pro 1.53.0.1 and earlier allows a remote authenticated attacker to inject an arbitrary script.
Affected products
- Vektor-Inc Vk Blocks: before 1.53.0.1 (fixed in 1.53.0.1)
Published 2023-05-23. Last modified 2026-06-17.