CVE-2024-32816: WordPress Combo Blocks plugin <= 2.2.78 - Sensitive Data Exposure via API vulnerability
Published Apr 24, 2024
·Updated
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in PickPlugins Post Grid.This issue affects Post Grid: from n/a through 2.2.78.
Affected Software
2 affected components
PickPlugins Post Grid<=2.2.78
WordPress Combo Blocks<=2.2.78
Remediation
Information
Update to 2.2.79 or a higher version.
Event History
Apr 24, 2024
CVE Published
via MITRE·07:41 AM
Data Sourced
via MITRE·07:41 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-32816?
CVE-2024-32816 has a medium severity rating due to its potential to expose sensitive information to unauthorized actors.
2
How do I fix CVE-2024-32816?
To fix CVE-2024-32816, update the Post Grid plugin to version 2.2.79 or later.
3
Which versions of Post Grid are affected by CVE-2024-32816?
CVE-2024-32816 affects Post Grid versions from n/a up to and including 2.2.78.
4
What type of information is exposed in CVE-2024-32816?
CVE-2024-32816 can result in the exposure of sensitive information due to improper access controls.
5
Is CVE-2024-32816 present in the WordPress Combo Blocks plugin?
Yes, CVE-2024-32816 also affects the WordPress Combo Blocks plugin up to version 2.2.78.