← Database

CVE-2025-15489

MEDIUM CVSS: 5.3 Published: 2026-09-02 Modified: 2026-09-02

Description

The Passster WordPress plugin before 4.2.24 does not handle input properly in an AJAX action, allowing unauthenticated users to retrieve the value of password protected content

Affected Platforms

Unknown

Weakness Type

CWE-863

References