The Security Hardener plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.4.4. The vulnerability exists because the plugin's user-enumeration protectio…
High CVSS 8.8
Summary
The Security Hardener plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 2.4.4. The vulnerability exists because the plugin's user-enumeration protection, which is enabled by default, hooks the rest_endpoints filter via secure_user_endpoints() and overwrites every registered handler's permission_callback on both the /wp/v2/users and /wp/v2/users/(?P<id>[\d]+) routes — including POST, PUT, PATCH, and DELETE handlers — with a bare closure that return…
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://plugins.trac.wordpress.org/browser/security-hardener/tags/2.4.4/security-hardener.php#L107
- https://plugins.trac.wordpress.org/browser/security-hardener/tags/2.4.4/security-hardener.php#L180
- https://plugins.trac.wordpress.org/browser/security-hardener/tags/2.4.4/security-hardener.php#L204
- https://plugins.trac.wordpress.org/browser/security-hardener/tags/2.4.4/security-hardener.php#L428
- https://plugins.trac.wordpress.org/browser/security-hardener/tags/2.4.4/security-hardener.php#L433
- https://plugins.trac.wordpress.org/browser/security-hardener/tags/2.4.4/security-hardener.php#L439
- https://plugins.trac.wordpress.org/changeset/3630896/security-hardener
- https://www.wordfence.com/threat-intel/vulnerabilities/id/64f1a71f-e210-4191-bfb4-56f8568180ed?source=cve
Timeline
- nvd_ingest NVD