Medium severity5.3NVD Advisory· Published Mar 13, 2024· Updated Apr 8, 2026
CVE-2024-0687
CVE-2024-0687
Description
The Restrict User Access – Ultimate Membership & Content Protection plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 2.5 via API. This makes it possible for unauthenticated attackers to obtain the contents of posts and pages via API.
Affected products
1- cpe:2.3:a:dev.institute:restrict_user_access:*:*:*:*:*:wordpress:*:*Range: <2.6
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- plugins.trac.wordpress.org/changesetnvdPatch
- www.wordfence.com/threat-intel/vulnerabilities/id/f67684cd-3e0f-48bb-967a-16ea2b027843nvdThird Party Advisory
News mentions
0No linked articles in our index yet.