CVE-2024-1204

The Meta Box WordPress plugin before 5.9.4 does not prevent users with at least the contributor role from access arbitrary custom fields assigned to other user's posts.
Configurations

Configuration 1 (hide)

cpe:2.3:a:metabox:meta_box:*:*:*:*:*:wordpress:*:*

History

No history.

Information

Published : 2024-04-15 05:15

Updated : 2025-05-15 13:40


NVD link : CVE-2024-1204

Mitre link : CVE-2024-1204

CVE.ORG link : CVE-2024-1204


JSON object : View

Products Affected

metabox

  • meta_box