CVE-2024-32586: Gutenberg Project Gutenberg
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Munir Kamal Gutenberg Block Editor Toolkit allows Stored XSS.This issue affects Gutenberg Block Editor Toolkit: from n/a through 1.40.4.
Affected products
- Gutenberg Project Gutenberg: any version
- Munir Kamal Gutenberg Block Editor Toolkit: up to and including 1.40.4
Published 2024-04-18. Last modified 2026-06-17.