{"api_version":"v1","generated_at":"2026-10-09T09:25:00+00:00","product":{"cve_count":3,"evidence_gap_note":"This identity is present in BlackTree CVE records, but no product-specific publisher support or retirement history is currently registered in Lifecycle.","id":"security:cve-creative-themes-blocksy-companion-d4c374cd4b3b","lifecycle_state":"evidence_gap","linked_lifecycle_url":null,"name":"Blocksy Companion","next_cursor":null,"observations":[{"affected":"Blocksy Companion: n/a \u2264 2.1.55","affected_versions_present":true,"cve_id":"CVE-2026-97247","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-97247","fixed":"Update the WordPress Blocksy Companion Plugin to the latest available version (at least 2.1.56).","last_modified":"2026-09-30T13:27:16.830Z","patch_url":"https://patchstack.com/database/wordpress/plugin/blocksy-companion/vulnerability/wordpress-blocksy-companion-plugin-2-1-55-broken-access-control-vulnerability?_s_id=cve","primary_source":"","published":"2026-09-30T12:28:05.461Z"},{"affected":"\u2264 2.1.46","affected_versions_present":true,"cve_id":"CVE-2026-58480","cve_url":"https://cve.blacktree.nl/cve/CVE-2026-58480","fixed":"2.1.47","last_modified":"2026-07-14T22:03:17.700Z","patch_url":"https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/blocksy-companion/blocksy-companion-2146-unauthenticated-arbitrary-file-upload-via-blc-review-images-parameter","primary_source":"","published":"2026-07-08T13:05:02.727Z"},{"affected":"\u2264 2.0.42","affected_versions_present":true,"cve_id":"CVE-2024-35633","cve_url":"https://cve.blacktree.nl/cve/CVE-2024-35633","fixed":"No fixed version is explicitly recorded in the structured CVE data.","last_modified":"2026-04-28T16:09:51.975Z","patch_url":"","primary_source":"","published":"2024-06-03T10:04:57.329Z"}],"source_generated_at":"2026-10-09T06:17:25.511Z","vendor":"Creative Themes"}}
