cve/2021/CVE-2021-24868.md
2024-05-25 21:48:12 +02:00

698 B

CVE-2021-24868

Description

The Document Embedder WordPress plugin before 1.7.9 contains a AJAX action endpoint, which could allow any authenticated user, such as subscriber to enumerate the title of arbitrary private and draft posts.

POC

Reference

Github

No PoCs found on GitHub currently.