← Back

CVE-2025-15489

nvd nist
Published: Sep 2, 2026Modified: Sep 3, 2026Deferred

JSON object

Loading...
5.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploitability: 3.9 / Impact: 1.4
Source: contact@wpscan.com (Secondary)

Description

The Passster WordPress plugin before 4.2.24 does not handle input properly in an AJAX action, allowing unauthenticated users to retrieve the value of password protected content

Timeline

No history available yet.