What the vulnerability does
01Description
Missing Authorization vulnerability in Vektor,Inc. VK Block Patterns.This issue affects VK Block Patterns: from n/a through 1.31.0.
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
What the vulnerability does
Missing Authorization vulnerability in Vektor,Inc. VK Block Patterns.This issue affects VK Block Patterns: from n/a through 1.31.0.
Explanation of Vulnerability in Simple Terms
VK Block Patterns through version 1.31.0 lacks proper authorization checks, allowing unauthenticated attackers to modify site content. The vulnerability requires only network access and no user interaction. Site administrators should update to a version newer than 1.31.0 to prevent unauthorized content changes.
What an attacker can do
Modify site content without authentication or permission.
Potential impact on your site
Attackers can alter published content, pages, or block patterns without your knowledge or consent.
Conditions required to exploit
Network access only; no authentication or user interaction required.
Key dates
External resources
Related vulnerabilities