Impact
The Slider Pro WordPress plugin version 1.0.0 lacks a capability check on the AJAX action sliderpro_multiple_images, enabling unauthenticated users to retrieve the title, excerpt and permalink of non-public posts, including drafts, pending, scheduled, private and trashed posts, as well as post revisions and media metadata. This allows disclosure of sensitive content that should remain confidential.
Affected Systems
Any WordPress website that has the Slider Pro plugin installed in a version through 1.0.0 is susceptible. The vulnerability is tied to the plugin itself and does not affect the core WordPress software or other plugins.
Risk and Exploitability
Because no authentication is required, an attacker can simply send an HTTP request to the vulnerable AJAX endpoint from anywhere on the internet. The attack requires no special credentials or privileged access. The EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, which indicates that at the time of this analysis there is no documented exploitation but the potential impact on confidentiality is high, especially if the site hosts private or draft content.
OpenCVE Enrichment