CVE-2021-24677
EUVD-2021-1158918.10.2021, 14:15
The Find My Blocks WordPress plugin before 3.4.0 does not have authorisation checks in its REST API, which could allow unauthenticated users to enumerate private posts' titles.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| find_my_blocks_project | find_my_blocks | 𝑥 < 3.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration