CVE-2023-1911
CVSS V2 None
CVSS V3 None
Description
The Blocksy Companion WordPress plugin before 1.8.82 does not ensure that posts to be accessed via a shortcode are already public and can be viewed, allowing any authenticated users, such as subscriber to access draft posts for example
Overview
- CVE ID
- CVE-2023-1911
- Assigner
- contact@wpscan.com
- Vulnerability Status
- Received
- Published Version
- 2023-05-02T08:15:10
- Last Modified Date
- 2023-05-02T08:15:10
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://wpscan.com/vulnerability/e7c52af0-b210-4e7d-a5e0-ee0645ddc08c |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-1911 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1911 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2023-05-02 09:01:33 | Added to TrackCVE | |||
2023-05-02 09:01:38 | Weakness Enumeration | new |