CVE Published: 26/04/2024 |
CVE Updated: 01/08/2024 |
CVE Year: 2024 Source: Wordfence |
Vendor: pr-gateway |
Product: Blog2Social: Social Media Auto Post & Scheduler Status : PUBLISHED
CVE-2024-3678 Description
The Blog2Social: Social Media Auto Post & Scheduler plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.4.2. This makes it possible for unauthenticated attackers to view limited information from password protected posts.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N