Pricing
Case studies
Login
Start trial
WPBakery Page Builder
WPBakery
Developer
N/A
Latest version
N/A
Installations
N/A
Last updated
WordPress Plugin
Active VDP
Report vulnerability
Vulnerabilities
Security Policy
Security Contributors
Vulnerability history
0 present
15 patched
1 Mitigation rules
Authenticated (Contributor+) Stored Cross-Site Scripting via Post Title tag attribute vulnerability
<= 7.5
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via Custom Heading tag attribute vulnerability
<= 7.5
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting via VC Single Image link attribute vulnerability
<= 7.6
02/02/2026
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 8.6
18/10/2025
Stored Cross-Site Scripting via Custom JS Module vulnerability
<= 8.6.1
15/10/2025
Stored Cross-Site Scripting via vc_custom_heading Shortcode vulnerability
<= 8.6.1
15/10/2025
Authenticated (Contributor+) Stored Cross-Site Scripting vulnerability
<= 8.5
05/08/2025
Authenticated (Contributor+) Stored Cross-Site Scripting via Multiple Page Builder Elements vulnerability
<= 8.4.1
23/07/2025
Authenticated (Author+) Stored Cross-Site Scripting via Grid Builder vulnerability
<= 8.4.1
19/06/2025
Authenticated (Author+) Stored Cross-Site Scripting vulnerability
<= 7.7
06/08/2024
Authenticated (Author+) Local File Inclusion vulnerability
<= 7.7
06/08/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via Post Author vulnerability
<= 7.5
15/04/2024
Authenticated (Contributor+) Stored Cross-Site Scripting via attributes vulnerability
<= 7.5
15/04/2024
Contributor+ Cross Site Scripting (XSS) vulnerability
< 6.13.0
20/06/2023
Authenticated Stored Cross-Site Scripting (XSS) vulnerability
<= 6.4
07/10/2020