CVE Database
/

CVE-2024-0421

Back to search

CVE-2024-0421

Published: Feb 12, 2024

Modified: May 7, 2025

PUBLISHED

Description

The MapPress Maps for WordPress plugin before 2.88.16 is affected by an IDOR as it does not ensure that posts to be retrieve via an AJAX action is a public map, allowing unauthenticated users to read arbitrary private and draft posts.

VendorProductVersions

Unknown

MapPress Maps for WordPress

affected
0 - < 2.88.16

References

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now