Description
The Essential Grid Gallery WordPress Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.1 via the on_front_ajax_action() function. This makes it possible for unauthenticated attackers to view private and password protected posts that may have private or sensitive information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-31827 | The Essential Grid Gallery WordPress Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.1.1 via the on_front_ajax_action() function. This makes it possible for unauthenticated attackers to view private and password protected posts that may have private or sensitive information. |
References
History
Wed, 08 Apr 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Essential Grid <= 3.1.1 - Unauthenticated Private Post Disclosure | |
| Weaknesses | CWE-862 | |
| References |
|
Fri, 27 Feb 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T17:15:10.787Z
Reserved: 2024-04-02T19:16:59.676Z
Link: CVE-2024-3235
Updated: 2024-08-01T20:05:08.333Z
Status : Awaiting Analysis
Published: 2024-04-10T05:15:50.417
Modified: 2026-04-08T19:21:18.230
Link: CVE-2024-3235
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD