Browse all 5 CVE security advisories affecting Breakdance. AI-powered Chinese analysis, POCs, and references for each vulnerability.
Breakdance is a WordPress page builder plugin enabling visual website design through drag-and-drop functionality. Historically, it has been susceptible to multiple remote code execution vulnerabilities due to insufficient input sanitization and improper file handling, alongside cross-site scripting flaws from inadequate output escaping. Privilege escalation issues have also been documented, allowing unauthorized access to restricted functions. The plugin's complex architecture with numerous shortcodes and dynamic content rendering increases attack surface. Four CVEs highlight persistent security challenges, though no major public incidents have been reported. Regular updates remain critical for maintaining security in environments utilizing this tool for web development.
Showing up to 20 recent security advisories. View all →
This page lists every published CVE security advisory associated with Breakdance. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.