CVE-2026-1560 | Custom Block Builder Plugin up to 4.2.0 on WordPress LazyBlocks_Blocks code injection
A vulnerability, which was classified as critical, was found in Custom Block Builder Plugin up to 4.2.0 on WordPress. Affected is the function LazyBlocks_Blocks. Such manipulation leads to code injection.
This vulnerability is referenced as CVE-2026-1560. It is possible to launch the attack remotely. No exploit is available.