Medium severity5.4NVD Advisory· Published Apr 11, 2024· Updated Jun 17, 2026
CVE-2024-0881
CVE-2024-0881
Description
The Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carousel WordPress plugin before 2.2.76 does not have proper authorization, resulting in password protected posts to be displayed in the result of some unauthenticated AJAX actions, allowing unauthenticated users to read such posts
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- WordPress/Post Grid, Form Maker, Popup Maker, WooCommerce Blocks, Post Blocks, Post Carouselllm-createRange: <2.2.76
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/e460e926-6e9b-4e9f-b908-ba5c9c7fb290/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.