Security Advisory

CVE-2023-5692

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-04-05 12:52:32
Last updated 2026-04-08 16:59:40
Assigner Wordfence
State PUBLISHED

Description

WordPress Core is vulnerable to Sensitive Information Exposure in versions up to, and including, 6.4.3 via the redirect_guess_404_permalink function. This can allow unauthenticated attackers to expose the slug of a custom post whose publicly_queryable post status has been set to false.