CVE-2026-25429 | wpdive Nexa Blocks Plugin up to 1.1.1 on WordPress deserialization
A vulnerability described as critical has been identified in wpdive Nexa Blocks Plugin up to 1.1.1 on WordPress. Impacted is an unknown function. The manipulation results in deserialization.
This vulnerability was named CVE-2026-25429. The attack may be performed from remote. There is no available exploit.