MEDIUM
WordPress Core <= 6.4.3 - Sensitive Information Exposure via redirect_guess_404_permalink
Published Apr 5, 2024
5.3
MEDIUMCVSS 3.1
EPSS 0.84%
Description
WordPress Core is vulnerable to Sensitive Information Exposure in versions up to, and including, 6.4.3 via the redirect_guess_404_permalink function. This can allow unauthenticated attackers to expose the slug of a custom post whose 'publicly_queryable' post status has been set to 'false'.
Affected products
-
Affected
- ≥ 0, ≤ 6.4.3
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| WordPress Foundation | WordPress | unaffected | Affected
|
No data.
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (6)
- https://core.trac.wordpress.org/changeset/57645
- https://developer.wordpress.org/reference/functions/is_post_publicly_viewable/
- https://developer.wordpress.org/reference/functions/is_post_type_viewable/
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-57979 Advisory
- https://github.com/WordPress/wordpress-develop/blob/6.3/src/wp-includes/canonical.php#L763
- https://www.wordfence.com/threat-intel/vulnerabilities/id/6e6f993b-ce09-4050-84a1-cbe9953f36b1?source=cve
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner Wordfence
Published Apr 5, 2024
Updated Apr 8, 2026
Reserved Oct 20, 2023
Link CVE-2023-5692
CISA Vulnrichment
Updated Apr 5, 2024
Red Hat
No data
GitHub
No data