CVE-2023-1371
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/04/2023
Last modified:
06/02/2025
Description
The W4 Post List WordPress plugin before 2.4.6 does not ensure that password protected posts can be accessed before displaying their content, which could allow any authenticated users to access them
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:w4_post_list_project:w4_post_list:*:*:*:*:*:wordpress:*:* | 2.4.6 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



