Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Searchwp Subscribe
Filtered by product Searchwp Live Ajax Search
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-2535 1 Searchwp 1 Searchwp Live Ajax Search 2022-08-16 N/A 5.3 MEDIUM
The SearchWP Live Ajax Search WordPress plugin before 1.6.2 does not ensure that users making a live search are limited to published posts only, allowing unauthenticated users to make a crafted query disclosing private/draft/pending post titles along with their permalink