The Newsmatic theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.3.0 via the newsmatic_filter_posts_load_tab_content. This makes it possible for unauthenticated attackers to view draft posts and post content.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Newsmatic | Blazethemes | * | 1.3.5 (excluding) |