Unauthorized Data Loss Vulnerability in Evergreen Content Poster Plugin for WordPress
CVE-2024-12071
Key Information:
- Vendor
Wordpress
- Vendor
- CVE Published:
- 18 January 2025
What is CVE-2024-12071?
The Evergreen Content Poster plugin for WordPress has a security flaw that allows unauthorized individuals to delete posts and pages without proper authentication. This vulnerability arises from a missing capability check within the delete_network_post() function. As a result, unauthenticated users can exploit this flaw to manipulate content, posing significant risks to the integrity of the website. It is essential for users of the plugin to apply updates and follow security best practices to safeguard their content.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Evergreen Content Poster β Auto Post and Schedule Your Best Content to Social Media * <= 1.4.4
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved