CVE-2024-1479

The WP Show Posts plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.4 via the wpsp_display function. This makes it possible for authenticated attackers with contributor access and above to view the contents of draft, trash, future, private and pending posts and pages.
Configurations

Configuration 1 (hide)

cpe:2.3:a:generatepress:wp_show_posts:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2024-03-13 16:15

Updated : 2025-03-06 15:01


NVD link : CVE-2024-1479

Mitre link : CVE-2024-1479

CVE.ORG link : CVE-2024-1479


JSON object : View

Products Affected

generatepress

  • wp_show_posts