Known CVE
YMC Filter WordPress - Unauthenticated Post Disclosure
YMC Filter WordPress plugin < 3.11.3 contains a broken access control vulnerability caused by improper authorization and lack of validation in a REST API endpoint, letting unauthenticated attackers retrieve private and non-public post content, exploit requires no authentication.
CVE-2026-10823
High2026CVSS 7.5CWE-200
cve2026 · wordpress · wp-plugin · ymc-filter · disclosure · unauth
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website