Unrated severityNVD Advisory· Published Aug 5, 2026· Updated Aug 5, 2026
Content Protector (Passster) < 4.3.6 - Unauthenticated Protected Content Disclosure via Content-Lock Block data-content Attribute
CVE-2026-16604
Description
The Passster WordPress plugin before 4.3.6 outputs password-protected block content in the public page response before verifying the password, allowing unauthenticated users to recover the protected content without knowing the password.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/6a3222e3-352f-4fe8-b17f-b2980c3528e4/mitreexploitvdb-entrytechnical-description
News mentions
0No linked articles in our index yet.