The Anonymous Restricted Content plugin for WordPress is vulnerable to information disclosure in all versions up to, and including, 1.6.2. This is due to insufficient restrictions through the REST API on the posts/pages that protections are being place on. This makes it possible for unauthenticated attackers to access protected content.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 13:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Cayenne
Cayenne anonymous Restricted Content |
|
CPEs | cpe:2.3:a:cayenne:anonymous_restricted_content:*:*:*:*:*:wordpress:*:* | |
Vendors & Products |
Tarassych
Tarassych anonymous Restricted Content |
Cayenne
Cayenne anonymous Restricted Content |

Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2024-08-01T18:18:18.947Z
Reserved: 2024-01-25T21:08:00.646Z
Link: CVE-2024-0909

Updated: 2024-08-01T18:18:18.947Z

Status : Modified
Published: 2024-02-03T06:15:48.057
Modified: 2025-07-16T13:23:29.907
Link: CVE-2024-0909

No data.