Medium severity6.5NVD Advisory· Published Jun 20, 2024· Updated Jun 17, 2026
CVE-2024-4565
CVE-2024-4565
Description
The Advanced Custom Fields (ACF) WordPress plugin before 6.3, Advanced Custom Fields Pro WordPress plugin before 6.3 allows you to display custom field values for any post via shortcode without checking for the correct access
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5cpe:2.3:a:advancedcustomfields:advanced_custom_fields:*:*:*:*:-:wordpress:*:*+ 1 more
- cpe:2.3:a:advancedcustomfields:advanced_custom_fields:*:*:*:*:-:wordpress:*:*range: <6.3
- cpe:2.3:a:advancedcustomfields:advanced_custom_fields:*:*:*:*:pro:wordpress:*:*range: <6.3
(expand)+ 1 more
- (no CPE)
- (no CPE)range: <6.3
- Range: <6.3
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/430224c4-d6e3-4ca8-b1bc-b2229a9bcf12/nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.