Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mvg8-3q76-q8p2

Опубликовано: 25 нояб. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

The Locker Content plugin for WordPress is vulnerable to Sensitive Information Exposure in version 1.0.0 via the 'lockerco_submit_post' AJAX endpoint. This makes it possible for unauthenticated attackers to extract content from posts that has been protected by the plugin.

The Locker Content plugin for WordPress is vulnerable to Sensitive Information Exposure in version 1.0.0 via the 'lockerco_submit_post' AJAX endpoint. This makes it possible for unauthenticated attackers to extract content from posts that has been protected by the plugin.

EPSS

Процентиль: 18%
0.00057
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.3
nvd
3 месяца назад

The Locker Content plugin for WordPress is vulnerable to Sensitive Information Exposure in version 1.0.0 via the 'lockerco_submit_post' AJAX endpoint. This makes it possible for unauthenticated attackers to extract content from posts that has been protected by the plugin.

EPSS

Процентиль: 18%
0.00057
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200