CVE-2026-1829General

LOWCVSS 8.8 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

The Content Visibility for Divi Builder plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.02 via the 'et_pb_text' shortcode 'cvdb_content_visibility_check' parameter. This makes it possible for authenticated attackers, with Contributor-level access and above, to execute code on the server.

2.3/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-94

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 12 mentions across 11 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 5 signals
  • General: 6 classified signals
  • Disclosure: 5 classified signals
  • Peaked 10d ago at 2 mentions (2026-03-20); latest day: 1
  • 12 total mentions across 11 days

Deep dive

Activity timeline12 mentions / 11d
01122Mentions · 2026-03-20: 2Mentions · 2026-06-03: 1Mentions · 2026-06-19: 1Mentions · 2026-06-20: 1Mentions · 2026-06-24: 1Mentions · 2026-06-28: 1Mentions · 2026-07-01: 1Mentions · 2026-07-04: 1Mentions · 2026-07-06: 1Mentions · 2026-07-08: 1Mentions · 2026-07-09: 1PoC Mentioned / Linked · 2026-06-03: 1Patch / Workaround · 2026-06-19: 1Patch / Workaround · 2026-07-06: 1Patch / Workaround · 2026-07-08: 1Technical Details · 2026-03-20: 1Technical Details · 2026-06-03: 1Technical Details · 2026-07-01: 1Technical Details · 2026-07-06: 1Technical Details · 2026-07-08: 103-2006-0306-1906-2006-2406-2807-0107-0407-0607-0807-09
Signal classification3 categories
General
650.0%
Disclosure
541.7%
PoC
18.3%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-03-202
Disclosure2
2026-06-031
PoC1
2026-06-191
General1
2026-06-201
Disclosure1
2026-06-241
General1
2026-06-281
General1
2026-07-011
Disclosure1
2026-07-041
General1
2026-07-061
Disclosure1
2026-07-081
General1
2026-07-091
General1
Full discourse12 posts
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    Disclosure

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/07/02/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    The article provides an explanation of CVE-2026-1829 affecting WordPress Divi Builder up to v4.02, along with a summary of its impact and recommended countermeasures, but it does not mention any proof‑of‑concept, exploit tool, or evidence of active exploitation.

    00110120
    210 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/07/02/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    The supplied text only contains a headline and a link about CVE‑2026‑1829, with no explicit information on the vulnerability, exploits, patches, or mitigation.

    1001066
    209 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/06/17/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    The text references an article explaining CVE‑2026‑1829 for WordPress Divi Builder, noting its scope and indicating mitigation suggestions, but provides no details on PoC, exploitation, or patches.

    00110142
    208 followersView on X
  • Joey Romaine 🇺🇸 |=★=|@Tank23x0
    Disclosure

    New advisory to triage: CVE-2026-1829. The Content Visibility for Divi Builder plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and… Inventory first. Panic never helps.

    Post summary

    The post announces a new advisory for CVE-2026-1829, describing a remote code execution vulnerability in the Divi Builder WordPress plugin, without offering PoC, exploitation tools, patches, or evidence of active abuse.

    1000046
    337 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    Disclosure

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/06/17/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    The content appears to be a vulnerability disclosure article that announces CVE-2026-1829 for the Divi Builder plugin but lacks detailed technical information, PoC, exploit code, or evidence of active exploitation.

    0001043
    208 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/06/17/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    The text references an article that likely explains the vulnerability and outlines mitigations, but it does not provide PoC, exploit code, evidence of active use, or detailed technical data.

    0001047
    209 followersView on X
  • Geng Yang@geng_zast
    Disclosure

    Our AI agent verified CVE-2026-1829 in Content Visibility for Divi Builder 4.01 in @WordPress . A Contributor-controlled expression reaches eval() through real feature paths. http://WordPress.org lists the plugin at 2,000+ active installations. https://t.co/BmZLqbiQbr

    Post summary

    The tweet confirms CVE‑2026‑1829 in Divi Builder 4.01, noting a contributor‑controlled expression that reaches eval(), but it does not provide a PoC, exploit, patch, or evidence of active exploitation.

    1000065
    42 followersView on X
  • ZAST AI@zast_ai
    Disclosure

    Security alert: CVE-2026-1829 affects Content Visibility for Divi Builder 4.01. Plugin page: https://wordpress.org/plugins/content-visibility-for-divi-builder/ http://WordPress.org lists 2,000+ active installations. https://t.co/kIzjo2gUhj

    Post summary

    The post announces CVE-2026-1829 targeting Content Visibility for Divi Builder 4.01, but provides no detailed vulnerability data or mitigation guidance.

    1000051
    31 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/07/02/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    The provided snippet only announces a CVE and links to an explanation article, but offers no concrete details, PoC, exploit code, or patch information.

    0000056
    207 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/07/02/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    A blog post explains CVE‑2026‑1829 affecting WordPress Divi Builder up to version 4.02, offering an overview of its impact and recommended countermeasures.

    0000050
    208 followersView on X
  • ケイ | IT・セキュリティ系副業Webライター@Teeeda_worker
    General

    CVE-2026-1829 WordPress用Divi Builderプラグイン(バージョン4.02まで)の脆弱性をわかりやすく解説|影響範囲と対策まとめ https://www.cybernote.click/2026/06/17/cve-2026-1829-wordpressdivi-builder402/ #IT #Security #cybersecurity

    Post summary

    The article offers a clear, user‑friendly explanation of CVE‑2026‑1829’s impact on the Divi Builder plugin and summarizes potential mitigations, but it does not provide a PoC, exploit details, evidence of active exploitation, or a specific patch.

    0000037
    208 followersView on X
  • Atomic Edge@atomicedgeWAF
    PoC

    https://atomicedge.io/cve-proof/cve-2026-1829-content-visibility-for-divi-builder-version-4-02-high-vulnerability-proof-of-concept CVE-2026-1829 content-visibility-for-divi-builder (CVSS Score 8.8) #WordPress plugin #vulnerability #cybersecurity #wordpressfirewall #wordpressse…

    Post summary

    The snippet announces a proof‑of‑concept for CVE‑2026‑1829, highlighting its 8.8 CVSS score and target plugin, but lacks details on exploitation or remediation.

    0000036
    6 followersView on X

Explore more