Known Vulnerabilities for products from Metabox

Listed below are 3 of the newest known vulnerabilities associated with the vendor "Metabox".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-2305 json Not Provided 2026-04-10 2026-04-10
CVE-2025-13922 json Not Provided 2025-12-06 2026-04-08
CVE-2024-1792 json Not Provided 2024-04-09 2026-04-08
CVE-2024-1684 json Not Provided 2024-03-13 2026-04-08
CVE-2023-6692 json Not Provided 2024-06-19 2026-04-08
CVE-2023-6526 json The Meta Box – WordPress Custom Fields Framework plugin for WordPress is vulnerable to Stored Cross-Site Scripting via cust... Not Provided 2024-02-05 2026-04-08
CVE-2023-6486 json Not Provided 2024-04-09 2026-04-08
CVE-2023-2562 json Not Provided 2023-07-12 2026-04-08
CVE-2023-2561 json Not Provided 2023-07-12 2026-04-08
CVE-2020-36753 json Not Provided 2023-10-20 2026-04-08
CVE-2019-14794 json The Meta Box plugin before 4.16.2 for WordPress mishandles the uploading of files to custom folders. 7.5 - HIGH 2019-08-09 2019-08-14
CVE-2019-14793 json The Meta Box plugin before 4.16.3 for WordPress allows file deletion via ajax, with the wp-admin/admin-ajax.php?action=rwmb_d... 6.5 - MEDIUM 2019-08-09 2020-08-24

Known software with vulnerabilities from Metabox

Type Vendor Product Version
ApplicationMetaboxMeta Box-