cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2024-11089,https://securityvulnerability.io/vulnerability/CVE-2024-11089,Un Authenticated Attackers Can Extract Sensitive Data via WordPress Core Search,"The Anonymous Restricted Content plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.6.5 via the WordPress core search feature. This makes it possible for unauthenticated attackers to extract sensitive data from posts that have been restricted to logged-in users.",Wordpress,Anonymous Restricted Content,5.3,MEDIUM,0.0004299999854993075,false,,false,false,false,,false,false,2024-11-21T13:55:32.191Z,0 CVE-2024-0909,https://securityvulnerability.io/vulnerability/CVE-2024-0909,Anonymous Restricted Content Plugin Vulnerable to Information Disclosure,"The Anonymous Restricted Content plugin, utilized within WordPress, has been identified to possess an information disclosure vulnerability affecting all versions up to and including 1.6.2. The root cause lies in inadequate restrictions imposed through the REST API on the posts and pages that are designed to have protections. This flaw potentially enables unauthenticated attackers to exploit the vulnerability, leading to unauthorized access to sensitive content that should be protected.",Wordpress,Anonymous Restricted Content,7.5,HIGH,0.0008200000156648457,false,,false,false,false,,false,false,2024-02-03T05:38:32.691Z,0