CVE · Medium

CVE-2024-0881 — Post Grid [post-grid] < 2.2.76

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-0881 Post Grid [post-grid] < 2.2.76 Incorrect Authorization Medium 5.4 < 2.2.76 2.2.76 2024-03-19

CVE-2024-0881

The Post Grid plugin for WordPress through version 2.2.74 contains a sensitive information exposure vulnerability in the post_grid_paginate_ajax_free AJAX endpoint. Unauthenticated attackers can exploit this flaw to access private and password-protected posts, potentially exposing confidential data. The vulnerability affects all versions up to and including 2.2.74, with a fix available in version 2.2.76 or later.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.