Логотип exploitDog
bind:CVE-2023-5922
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-5922

Количество 2

Количество 2

nvd логотип

CVE-2023-5922

около 2 лет назад

The Royal Elementor Addons and Templates WordPress plugin before 1.3.81 does not ensure that users accessing posts via an AJAX action (and REST endpoint, currently disabled in the plugin) have the right to do so, allowing unauthenticated users to access arbitrary draft, private and password protected posts/pages content

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-759v-jfx5-q87v

около 2 лет назад

The Royal Elementor Addons and Templates WordPress plugin before 1.3.81 does not ensure that users accessing posts via an AJAX action (and REST endpoint, currently disabled in the plugin) have the right to do so, allowing unauthenticated users to access arbitrary draft, private and password protected posts/pages content

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-5922

The Royal Elementor Addons and Templates WordPress plugin before 1.3.81 does not ensure that users accessing posts via an AJAX action (and REST endpoint, currently disabled in the plugin) have the right to do so, allowing unauthenticated users to access arbitrary draft, private and password protected posts/pages content

CVSS3: 7.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-759v-jfx5-q87v

The Royal Elementor Addons and Templates WordPress plugin before 1.3.81 does not ensure that users accessing posts via an AJAX action (and REST endpoint, currently disabled in the plugin) have the right to do so, allowing unauthenticated users to access arbitrary draft, private and password protected posts/pages content

CVSS3: 7.5
1%
Низкий
около 2 лет назад

Уязвимостей на страницу