Vulnerabilities > Codesupply > Sight

DATE CVE VULNERABILITY TITLE RISK
2024-09-26 CVE-2024-9025 Missing Authorization vulnerability in Codesupply Sight
The Sight – Professional Image Gallery and Portfolio plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'handler_post_title' function in all versions up to, and including, 1.1.2.
network
low complexity
codesupply CWE-862
5.3