CVE-2024-1381

The Page Builder Sandwich – Front End WordPress Page Builder Plugin plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.1.0. This makes it possible for authenticated attackers, with subscriber access and higher, to extract sensitive user or configuration data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pagebuildersandwich:page_builder_sandwich:*:*:*:*:*:wordpress:*:*

History

01 Apr 2025, 13:39

Type Values Removed Values Added
References () https://plugins.trac.wordpress.org/browser/page-builder-sandwich/trunk/class-inspector.php#L90 - () https://plugins.trac.wordpress.org/browser/page-builder-sandwich/trunk/class-inspector.php#L90 - Patch
References () https://www.wordfence.com/threat-intel/vulnerabilities/id/8e98d92a-fe64-4591-972b-ed11542506b7?source=cve - () https://www.wordfence.com/threat-intel/vulnerabilities/id/8e98d92a-fe64-4591-972b-ed11542506b7?source=cve - Third Party Advisory
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:pagebuildersandwich:page_builder_sandwich:*:*:*:*:*:wordpress:*:*
First Time Pagebuildersandwich
Pagebuildersandwich page Builder Sandwich

21 Nov 2024, 08:50

Type Values Removed Values Added
Summary
  • (es) El complemento Page Builder Sandwich – Front End WordPress Page Builder para WordPress es vulnerable a la exposición de información confidencial en todas las versiones hasta la 5.1.0 incluida. Esto hace posible que atacantes autenticados, con acceso de suscriptor y superior, extraigan datos confidenciales de configuración o de usuario.
References () https://plugins.trac.wordpress.org/browser/page-builder-sandwich/trunk/class-inspector.php#L90 - () https://plugins.trac.wordpress.org/browser/page-builder-sandwich/trunk/class-inspector.php#L90 -
References () https://www.wordfence.com/threat-intel/vulnerabilities/id/8e98d92a-fe64-4591-972b-ed11542506b7?source=cve - () https://www.wordfence.com/threat-intel/vulnerabilities/id/8e98d92a-fe64-4591-972b-ed11542506b7?source=cve -

05 Mar 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-03-05 02:15

Updated : 2025-04-01 13:39


NVD link : CVE-2024-1381

Mitre link : CVE-2024-1381

CVE.ORG link : CVE-2024-1381


JSON object : View

Products Affected

pagebuildersandwich

  • page_builder_sandwich