Vulnerabilities (CVE)

Filtered by vendor Page\/post Content Shortcode Project Subscribe
Filtered by product Page\/post Content Shortcode
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-24819 1 Page\/post Content Shortcode Project 1 Page\/post Content Shortcode 2024-02-28 4.0 MEDIUM 4.3 MEDIUM
The Page/Post Content Shortcode WordPress plugin through 1.0 does not have proper authorisation in place, allowing users with a role as low as contributor to access draft/private/password protected/trashed posts/pages they should not be allowed to, including posts created by other users such as admins and editors.