CVE-2026-4338
EUVD-2026-2005808.04.2026, 07:16
The ActivityPub WordPress plugin before 8.0.2 does not properly filter posts to be displayed, allowed unauthenticated users to access drafts/scheduled/pending postsEnginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| automattic | activitypub | 𝑥 < 8.0.2 |
𝑥
= Vulnerable software versions