Blockspare maintains a focused web application product where disclosed vulnerabilities center on cross-site scripting and related input-handling weaknesses in web-page generation contexts. Current severity, exploitation, and exposure metrics are shown in the live-stats panel alongside this summary.
The number and severity of CVEs published that impact products developed by Blockspare over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-47363MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Blockspare Blockspare blockspare allows Stored XSS.This issue affects Blockspa | Oct 6, 2024 | 6.5 | 19 | NO | NO |
CVE-2024-43164MEDIUM Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Blockspare allows Stored XSS.This issue affects Blockspare: from n/a th | Aug 12, 2024 | 6.5 | 19 | NO | NO |
CVE-2025-47495MEDIUM Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Blockspare Blockspare blockspare allows Stored XSS.This issue affects Blockspa | May 7, 2025 | 6.5 | 18 | NO | NO |
CVE-2025-62026MEDIUM Insertion of Sensitive Information Into Sent Data vulnerability in Blockspare Blockspare blockspare allows Retrieve Embedded Sensitive Data.This issue affects Blockspare: from n/a | Oct 22, 2025 | 4.3 | 17 | NO | NO |
CVE-2024-8325MEDIUM The Blockspare: Gutenberg Blocks & Patterns for Blogs, Magazines, Business Sites – Post Grids, Sliders, Carousels, Counters, Page Builder & Starter Site Imports, No Coding Needed p | Sep 4, 2024 | 5.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Blockspare.
Media articles that mention a CVE ID that affects a product developed by Blockspare — matched by CVE ID, not by vendor name.