← WordPress Vulnerabilities
WordPress security by component

Bogo

Bogo is a WordPress component with 1 published CVE record in this archive. The latest tracked vulnerability was published Jun 19, 2026; the highest published CVSS base score is 4.3.

Plugin slug: bogo

CVE-2026-9013: Bogo: Sensitive information exposure

Bogo is affected by sensitive information exposure. Exploitation requires an authenticated subscriber account. Successful exploitation can disclose data that should not be available to the caller. The published affected range is <= 3.9.1. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.

PublishedJun 19, 2026
Safe version guidanceSee mitigation notes
Published vulnerabilities for bogo
Safe version
Jun 19, 2026 CVE-2026-9013
Bogo: Sensitive information exposure
Bogo is affected by sensitive information exposure. Exploitation requires an authenticated subscriber account. Successful exploitation can disclose data that should not be available to the caller. The published affected range is <= 3.9.1. The public source does not disclose the vulnerable endpoint, action, parameter or function, so the precise input path remains unknown.
See mitigation notes
CVE4.3
NVDPending