Greenshift
cpe:2.3:a:greenshiftwp:greenshift_-_animation_and_page_builder_blocks:*:*:*:*:wordpress:*:*
- <= 12.5.7
A vulnerability exists in the Greenshift animation and page builder blocks plugin for WordPress, in all versions through 12.5.7. The issue arises from a missing capability check in the greenshift_app_pass_validation() function, allowing authenticated attackers with Subscriber-level access and above to access global plugin settings, including sensitive AI API keys.
Exploitation of this vulnerability could lead to unauthorized access to sensitive plugin settings and AI API keys.
Users are advised to update the Greenshift animation and page builder blocks plugin to version 12.6 or a newer patched version.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.