Access violation vulnerability in List category posts 0.92.0

The List category posts plugin for WordPress has a security issue that allows unauthorized people to access sensitive information. This can happen through the use of the ‘catlist’ shortcode, which does not have enough restrictions on which posts can be included. As a result, even people with contributor-level access or higher can view data from password protected, private, or draft posts that they are not supposed to have access to.

Detected in:

List category posts fixed vulnerable versions: >= * <= 0.92.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.