CVE-2024-7418
EUVD-2024-4834429.08.2024, 11:15
The The Post Grid – Shortcode, Gutenberg Blocks and Elementor Addon for Post Grid plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.7.11 via the post_query_guten and post_query functions. This makes it possible for authenticated attackers, with contributor-level access and above, to extract information from posts that are not public (i.e. draft, future, etc..).Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| radiustheme | the_post_grid | 𝑥 < 7.7.12 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References