Weak configuration vulnerability in Page Restriction WordPress (WP) – Protect WP Pages/Post 1.3.4

The Page Restriction WordPress plugin, used to protect pages and posts on WordPress websites, has a security vulnerability in all versions up to 1.3.4. This means that unauthorized people can view private pages through the REST API. The creators of the plugin have decided not to fix this issue for posts and pages, and the restrictions will only work on the front-end of the site. They suggest installing the WordPress REST API Authentication plugin for full protection.

Detected in:

Page Restriction WordPress (WP) – Protect WP Pages/Post fixed vulnerable versions: >= * <= 1.3.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.