CVE Vulnerabilities

CVE-2023-5692

Published: Apr 05, 2024 | Modified: Apr 08, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

WordPress Core is vulnerable to Sensitive Information Exposure in versions up to, and including, 6.4.3 via the redirect_guess_404_permalink function. This can allow unauthenticated attackers to expose the slug of a custom post whose publicly_queryable post status has been set to false.

Affected Software

Name Vendor Start Version End Version
Wordpress Ubuntu mantic *
Wordpress Ubuntu upstream *

References