Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cpv9-x52v-j5m3

Опубликовано: 09 апр. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 5.9.13 via the load_more function. This can allow unauthenticated attackers to extract sensitive data including private and draft posts.

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 5.9.13 via the load_more function. This can allow unauthenticated attackers to extract sensitive data including private and draft posts.

EPSS

Процентиль: 60%
0.00392
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-922

Связанные уязвимости

CVSS3: 5.3
nvd
почти 2 года назад

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 5.9.13 via the load_more function. This can allow unauthenticated attackers to extract sensitive data including private and draft posts.

EPSS

Процентиль: 60%
0.00392
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-922