CVE-2023-1371

The W4 Post List WordPress plugin before 2.4.6 does not ensure that password protected posts can be accessed before displaying their content, which could allow any authenticated users to access them
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:w4_post_list_project:w4_post_list:*:*:*:*:*:wordpress:*:*

History

07 Nov 2023, 04:03

Type Values Removed Values Added
CWE CWE-862

Information

Published : 2023-04-17 13:15

Updated : 2024-02-28 20:13


NVD link : CVE-2023-1371

Mitre link : CVE-2023-1371

CVE.ORG link : CVE-2023-1371


JSON object : View

Products Affected

w4_post_list_project

  • w4_post_list
CWE
CWE-862

Missing Authorization