The Easy Custom Auto Excerpt plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 2.4.12. This makes it possible for unauthenticated attackers to obtain excerpts of password-protected posts.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-05-02 17:15
Updated : 2026-06-17 07:43
NVD link : CVE-2024-3312
Mitre link : CVE-2024-3312
CVE.ORG link : CVE-2024-3312
JSON object : View
Products Affected
No product.
CWE
CWE-862
Missing Authorization
