CVE Database
/

CVE-2023-4036

Back to search

CVE-2023-4036

Published: Aug 30, 2023

Modified: May 2, 2025

PUBLISHED

Description

The Simple Blog Card WordPress plugin before 1.32 does not ensure that posts to be displayed via a shortcode are public, allowing any authenticated users, such as subscriber, to retrieve arbitrary post title and their content such as draft, private and password protected ones

VendorProductVersions

Unknown

Simple Blog Card

affected
0 - < 1.32

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now