← WordPress Vulnerabilities
WordPress security by component

Simple Restrict

Simple Restrict is a WordPress component with 2 published CVE records in this archive. The latest tracked vulnerability was published Dec 10, 2024; the highest CVE/CNA score is 5.3.

Plugin slug: simple-restrict

CVE-2024-11106: Simple Restrict: Sensitive information exposure

Simple Restrict is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.

PublishedDec 10, 2024
Safe version guidanceSee mitigation notes
Safe version
Dec 10, 2024 CVE-2024-11106
Simple Restrict: Sensitive information exposure
Simple Restrict is affected by sensitive information exposure. The vulnerable path is reachable without authentication. Successful exploitation can disclose data that should not be available to the caller.
See mitigation notes
CVE5.3
NVDPending
Mar 13, 2024 CVE-2024-1083
Simple Restrict: Sensitive information exposure
Simple Restrict is affected by sensitive information exposure. Exploitation requires an authenticated WordPress account. Successful exploitation can disclose data that should not be available to the caller.
See mitigation notes
CVE5.3
NVDPending