CVE Published: 15/04/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: WPScan |
Vendor: Unknown |
Product: Meta Box Status : PUBLISHED
CVE-2024-1204 Description
The Meta Box WordPress plugin before 5.9.4 does not prevent users with at least the contributor role from access arbitrary custom fields assigned to other user\'s posts.