CVE-2025-5920
EUVD-2025-1996304.07.2025, 10:15
The Sharable Password Protected Posts before version 1.1.1 allows access to password protected posts by providing a secret key in a GET parameter. However, the key is exposed by the REST API.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fabiantodt | private_post_share | 𝑥 < 1.1.1 |
𝑥
= Vulnerable software versions