Security Advisory

CVE-2026-16604

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-05 06:00:09
Last updated 2026-08-05 15:19:52
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The Passster WordPress plugin before 4.3.6 outputs password-protected block content in the public page response before verifying the password, allowing unauthenticated users to recover the protected content without knowing the password.