CVE-2021-29450 log
| Source |
|
| Severity | Medium |
| Remote | Yes |
| Type | Information disclosure |
| Description | One of the blocks in the WordPress editor can be exploited in a way that exposes password-protected posts and pages. This requires at least contributor privileges. This has been patched in WordPress 5.7.1, along with the older affected versions via minor releases. |
| Group | Package | Affected | Fixed | Severity | Status | Ticket |
|---|---|---|---|---|---|---|
| AVG-1831 | wordpress | 5.7-1 | 5.7.1-1 | Medium | Fixed |
| References |
|---|
https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-pmmh-2f36-wvhq https://github.com/WordPress/wordpress-develop/commit/7ef3d73455f0eade737b61e0fbcf61cf0abff73e |