VK Block Patterns

VK Block Patterns has 2 disclosed vulnerabilities in the WordSec catalog, all reported in 2024; all 2 are fixed as of September 2026. Their average CVSS score is 4.8, and the most serious one scores 5.3 out of 10. 2024 was the busiest year with 2 disclosures.

The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (50%). Other recurring categories include Missing Authorization.

Every one of the 2 issues recorded for VK Block Patterns has a vendor fix available, so running the current release closes all known holes.

2 independent researchers contributed these findings, one record each. VK Block Patterns is installed on roughly 100,000 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 7.1.

Strategic Overview

Avg CVSSMedium
4.8/ 10
Patch Coverage100%
Open

0

Fixed

2

Get automatic notifications for all VK Block Patterns vulnerabilities before they are exploited.

Highest severity on recordCVSS 5.3CVE-2024-32826

VK Block Patterns <= 1.31.0 - Missing Authorization

Read the full analysis

Vulnerability Records

2 records
VK Block Patterns banner
Latestv1.39.1

VK Block Patterns

Vektor,Inc.

Author

Vektor,Inc.

5.0(2)
100/100
Last Updated
2026-08-31 (13d ago)
Active Installs
100,000+
Downloads
2,542,531
Requires WP
6.7+
Requires PHP
7.4+
Tested up to
WP 7.1
Created
2020-08-21 (6y ago)

When you activate this plugin that create new custom post type for custom block patterns. If you register custom patterns that you can select registered block patterns on edit screen.

Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C