← Back to CVE List
WORDFENCE-83597e50-1992-4171-b24e-b14f55be6e4cWordfence
Vulnerability Summary
WordPress Core is vulnerable to Information Exposure via the wp_ajax_sample_permalink() and wp_ajax_get_permalink() AJAX actions in various versions up to, and including, 7.1 due to a missing edit_post capability check on the supplied post ID. This makes it possible for authenticated attackers with Contributor-level access and above to disclose the slug and sample permalink of draft or pending posts authored by other users.
CVSS v3.1 Base Metrics — Score 4.3 (MEDIUM)
Attack VectorNetwork
Attack ComplexityLow
Privileges RequiredLow
User InteractionNone
ScopeUnchanged
ConfidentialityLow
IntegrityNone
AvailabilityNone
Affected & Patched Versions
- WordPress * - 6.6.7
- WordPress 6.7 - 6.7.7
- WordPress 6.8 - 6.8.8
- WordPress 6.9 - 6.9.7
- WordPress 7.0 - 7.0.4
- WordPress 7.1 - 7.1
- WordPress 1