CVE-2011-3128

Source
https://nvd.nist.gov/vuln/detail/CVE-2011-3128
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2011-3128.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2011-3128
Downstream
Published
2011-08-10T21:55:02Z
Modified
2025-08-09T20:01:28Z
Summary
[none]
Details

WordPress 3.1 before 3.1.3 and 3.2 before Beta 2 treats unattached attachments as published, which might allow remote attackers to obtain sensitive data via vectors related to wp-includes/post.php.

References

Affected packages