WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. In affected versions authenticated users who don't have permission to view private post types/data can bypass restrictions in the block editor under certain conditions. This affected WordPress 5.8 beta during the testing period. It's fixed in the final 5.8 release.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2021-09-09T22:00:11

Updated: 2024-08-04T01:58:18.303Z

Reserved: 2021-08-16T00:00:00

Link: CVE-2021-39203

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-09-09T22:15:09.683

Modified: 2022-08-05T11:00:34.367

Link: CVE-2021-39203

cve-icon Redhat

No data.