Skip to content
September 23, 2025

Free Websites, share News and Posts publicly

Primary Menu
  • Registration free websites/as writer
  • Login
Live
  • Home
  • Bricks 1.9.6.1 Patches Critical RCE Vulnerability
  • news

Bricks 1.9.6.1 Patches Critical RCE Vulnerability

alisa February 16, 2024 2 min read
Read on blog or Reader
Site logo image James Giroux posted: ” First disclosed by security researcher Calvin Alkan of snicco, the vulnerability impacts all versions of Bricks Builder before version 1.9.6.1. Identified as a Remote Code Execution (RCE) flaw, it poses a critical security risk, allowing attackers to pot” WP Tavern Read on blog or Reader

Table of Contents

  • Bricks 1.9.6.1 Patches Critical RCE Vulnerability
    • What is Bricks?
    • Understanding RCE Vulnerabilities
    • Timeline of the Patch
    • Update Highly Recommended

Bricks 1.9.6.1 Patches Critical RCE Vulnerability

13b3c2669c4f02f0684e72ae978ccda58ea137e1cddb9dafacf43967c841b96d?s=96&d=retro&r=R

James Giroux

February 16

First disclosed by security researcher Calvin Alkan of snicco, the vulnerability impacts all versions of Bricks Builder before version 1.9.6.1. Identified as a Remote Code Execution (RCE) flaw, it poses a critical security risk, allowing attackers to potentially gain unauthorized control over websites running on an affected version of Bricks.

What is Bricks?

Bricks or Bricks Builder is a visual site builder that allows users to create web pages on WordPress without using code through their drag-and-drop interface. Unlike other similar products in the WordPress ecosystem which deliver functionality through plugins, the Bricks Builder uses the theme functionality as it’s way of delivering features to users.

Understanding RCE Vulnerabilities

RCE vulnerabilities are among the most critical types of security flaws. They allow attackers to execute arbitrary code on a website from a remote location, allowing them to control the site, access confidential data, distribute malware, and more.

Timeline of the Patch

The vulnerability disclosure timeline is commendable for its efficiency. The flaw was reported to Bricks by security research team snicco on February 10, 2024, marking the start of a swift and effective response. Bricks acknowledged the issue on the same day and, by February 13, had released the patch (1.9.6.1) following snicco’s recommendations. 

Update Highly Recommended

Wordfence has labelled the severity of this vulnerability a 9.8 out of 10 while Patchstack has labelled it a 10 out 10, marking it a critical update for website owners using Bricks. Users are urged to update their installations immediately to protect their sites from potential exploits.

If you would like to learn more about how this security vulnerability was discovered, Calvin Alkan will be joining Remkus De Vries on his show for a discussion on this and other related security topics.

Comment

WP Tavern © 2024. Manage your email settings or unsubscribe.

WordPress.com and Jetpack Logos

Get the Jetpack app

Subscribe, bookmark, and get real-time notifications – all from one app!

Download Jetpack on Google Play Download Jetpack from the App Store
WordPress.com Logo and Wordmark title=

Automattic, Inc. – 60 29th St. #343, San Francisco, CA 94110  

t.gif?has featured image=0&subscriber id=530390941& ui=8ba62ef4a9e9a49d3fe3da3d5a99ce4d& ut=anon&email domain=gmail.com&blog id=9006382&post id=153925&user email=gjjtuyu768%40gmail.com&date sent=2024 02 16&email id=ca95ab669a44e46e92cfefba69e39ced&email name=new post&template=new post& en=wpcom email open&browser type=php agent& aua=wpcom tracks client v0 b.gif?blog=9006382&post=153925&subd=wptavern.com&ref=&email=1&email o=jetpack&host=wptavern

Chat read-only to anonymous users. Chat with Anyone and Anywhere. Only registered users are allowed to send messages.
Loading the chat ...
127566 Register Login

Continue Reading

Previous: A push for virtual testimony
Next: Trump fined more than $350 million in New York business fraud case

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

verde two
VERDE TWO Apartment sale
  • actress and actor
  • Afghanistan
  • airlines
  • amazon
  • America
  • android
  • apache
  • apple
  • Arab
  • australia
  • Australian Embassy
  • automotive
  • bahan bangunan
  • Bali island
  • Ban
  • banking
  • bearing
  • Brazil
  • Brunei Darussalam
  • business
  • canada
  • casino
  • China
  • cloud
  • cloudflare
  • cPanel
  • cruise
  • crypto currency
  • culture
  • currency
  • DNS
  • docker
  • eCommerce
  • economy
  • education
  • Email
  • Energy
  • england
  • entertainment
  • environment
  • Fashion
  • finance
  • Food
  • France
  • gaming
  • garden
  • Germany
  • golf
  • Golf indonesia
  • google
  • HarmonyOS
  • Health products
  • history
  • hospital
  • hotel restaurant
  • Huawei
  • human
  • IBM
  • IMF
  • india
  • Indonesia
  • instagram
  • internet
  • investment
  • Israel
  • Japan
  • jobs
  • kitchenware
  • korea
  • kubernetes
  • KVM
  • Leisure
  • limbah
  • Linux
  • Living style
  • Longhorn
  • lottery
  • machine
  • machine learning
  • machinery
  • Malaysia
  • manufacturing
  • mariadb
  • maritime
  • material building
  • medical
  • meta
  • Microsoft
  • music
  • MySQL
  • New Zealand
  • news
  • NFS
  • Nickel
  • nightclub
  • north korea
  • OBS
  • oil and gas
  • Pakistan
  • Palestine
  • Philippines
  • Photography
  • php
  • phpMyAdmin
  • private-jet
  • promotion products
  • real estate
  • Resort hotel
  • Russia
  • sanitary ware
  • search engine
  • Shopping Mal
  • singapore
  • Singapore Pools
  • software
  • south korea
  • sport
  • ssl
  • swiss
  • Technology
  • Thailand
  • tourism boards
  • travel
  • Turkish
  • Ubuntu
  • Uncategorized
  • United Arab Emirates
  • vietnam
  • virtualbox
  • virtualization
  • vmware
  • water products
  • whatsapp
  • WordPress
Register and posting news , your skills , knowledge , science , stories , experiences , etc
Copyright © All rights reserved. The tiatira is not responsible for the content of each writer / author , external sites. |