The Anonymous Restricted Content plugin for WordPress is vulnerable to information disclosure in all versions up to, and including, 1.6.2. This is due to insufficient restrictions through the REST API on the posts/pages that protections are being place on. This makes it possible for unauthenticated attackers to access protected content.
Metrics
Affected Vendors & Products
References
History
Fri, 10 Apr 2026 04:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tarassych
Tarassych anonymous Restricted Content |
|
| CPEs | cpe:2.3:a:tarassych:anonymous_restricted_content:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Tarassych
Tarassych anonymous Restricted Content |
|
| Metrics |
ssvc
|
Wed, 08 Apr 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Anonymous Restricted Content <= 1.6.2 - Protection Mechanism Bypass | |
| Weaknesses | CWE-200 |
Wed, 16 Jul 2025 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cayenne
Cayenne anonymous Restricted Content |
|
| CPEs | cpe:2.3:a:cayenne:anonymous_restricted_content:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Tarassych
Tarassych anonymous Restricted Content |
Cayenne
Cayenne anonymous Restricted Content |
Status: PUBLISHED
Assigner: Wordfence
Published: 2024-02-03T05:38:32.691Z
Updated: 2026-04-08T17:33:09.322Z
Reserved: 2024-01-25T21:08:00.646Z
Link: CVE-2024-0909
Updated: 2024-08-01T18:18:18.947Z
Status : Modified
Published: 2024-02-03T06:15:48.057
Modified: 2026-04-08T19:19:19.313
Link: CVE-2024-0909
No data.