CVE · Medium

CVE-2024-35690 — Widget Options – Advanced Conditional Visibility for Gutenberg Blocks & Classic Widgets [widget-options] < 4.0.2

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2024-35690 Widget Options – Advanced Conditional Visibility for Gutenberg Blocks & Classic Widgets [widget-options] < 4.0.2 Insertion of Sensitive Information Into Sent Data Medium 6.5 < 4.0.2 4.0.2 2024-06-06

CVE-2024-35690

The Widget Options plugin for WordPress through version 4.0.1 contains a sensitive data exposure vulnerability that allows unauthorized access to confidential information. The flaw was identified in versions 4.0.1 and earlier, with the issue resolved in version 4.0.2. Users should upgrade to the patched version to prevent potential data leakage.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.