CVE-2024-1479
13.03.2024, 16:15
The WP Show Posts plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.4 via the wpsp_display function. This makes it possible for authenticated attackers with contributor access and above to view the contents of draft, trash, future, private and pending posts and pages.Enginsight
Vendor | Product | Version |
---|---|---|
generatepress | wp_show_posts | 𝑥 < 1.1.5 |
𝑥
= Vulnerable software versions
References