WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. In affected versions authenticated users who don't have permission to view private post types/data can bypass restrictions in the block editor under certain conditions. This affected WordPress 5.8 beta during the testing period. It's fixed in the final 5.8 release.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2021-09-09T22:00:11
Updated: 2024-08-04T01:58:18.303Z
Reserved: 2021-08-16T00:00:00
Link: CVE-2021-39203
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-09-09T22:15:09.683
Modified: 2024-11-21T06:18:53.493
Link: CVE-2021-39203
Redhat
No data.