The Anonymous Restricted Content plugin for WordPress is vulnerable to information disclosure in all versions up to, and including, 1.6.2. This is due to insufficient restrictions through the REST API on the posts/pages that protections are being place on. This makes it possible for unauthenticated attackers to access protected content.
References
Configurations
History
16 Jul 2025, 13:23
Type | Values Removed | Values Added |
---|---|---|
First Time |
Cayenne
Cayenne anonymous Restricted Content |
|
CPE | cpe:2.3:a:cayenne:anonymous_restricted_content:*:*:*:*:*:wordpress:*:* |
Information
Published : 2024-02-03 06:15
Updated : 2025-07-16 13:23
NVD link : CVE-2024-0909
Mitre link : CVE-2024-0909
CVE.ORG link : CVE-2024-0909
JSON object : View
Products Affected
cayenne
- anonymous_restricted_content
CWE