Access violation vulnerability in Under Construction / Maintenance Mode from Acurax 2.6

The Acurax plugin for WordPress, which is used for Under Construction or Maintenance Mode, has a security issue. This problem affects all versions up to 2.6 and allows attackers to access sensitive information through the REST API. This means that even if the plugin is supposed to protect your website’s posts and pages while in maintenance mode, attackers can still view their contents without being authenticated.

Detected in:

Under Construction / Maintenance Mode from Acurax open vulnerable versions: >= * <= 2.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.