Vulnerabilities
Vulnerable Software
Sivel:  >> Page Restrict  >> 2.3.0  Security Vulnerabilities
Cross-Site Request Forgery (CSRF) vulnerability in Matt Martz & Andy Stratton Page Restrict.This issue affects Page Restrict: from n/a through 2.5.5.
CVSS Score
4.3
EPSS Score
0.002
Published
2024-02-28
The Page Restrict plugin for WordPress is vulnerable to information disclosure in all versions up to, and including, 2.5.5. This is due to the plugin not properly restricting access to posts via the REST API when a page has been made private. This makes it possible for unauthenticated attackers to view protected posts.
CVSS Score
5.3
EPSS Score
0.005
Published
2024-02-28


Contact Us

Shodan ® - All rights reserved