PatchSiren

Ultimatebeaver CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Ultimatebeaver CVE published 2026-06-20

CVE-2019-25763

CVE-2019-25763 is a critical authentication bypass vulnerability in WordPress Ultimate Addons for Beaver Builder 1.2.4.1. Attackers can exploit the social media login form functionality to gain unauthorized access. The vulnerability allows attackers to submit a POST request to the admin-ajax.php endpoint with the uabb-lf-google-submit action, a valid administrator email address, and a valid nonce to obtai [truncated]