Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
6.5
Brainstorm_Force Ultimate Addons for WPBakery Page Builder: Unauthorized Access Risk
CVE-2026-28038
Summary
A security issue in Ultimate Addons for WPBakery Page Builder could allow someone with access to make changes they shouldn't. If your security settings are not properly configured, an attacker could exploit this weakness. To stay safe, update the plugin to the latest version or use a reputable security plugin to lock down access.
Original title
Missing Authorization vulnerability in Brainstorm_Force Ultimate Addons for WPBakery Page Builder ultimate_vc_addons allows Exploiting Incorrectly Configured Access Control Security Levels.This iss...
Original description
Missing Authorization vulnerability in Brainstorm_Force Ultimate Addons for WPBakery Page Builder ultimate_vc_addons allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Ultimate Addons for WPBakery Page Builder: from n/a through <= 3.21.1.
nvd CVSS3.1
6.5
Vulnerability type
CWE-862
Missing Authorization
Published: 5 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026