Skip to content

Known CVE

YMC Filter WordPress - Unauthenticated Post Disclosure

YMC Filter WordPress plugin < 3.11.3 contains a broken access control vulnerability caused by improper authorization and lack of validation in a REST API endpoint, letting unauthenticated attackers retrieve private and non-public post content, exploit requires no authentication.

CVE-2026-10823

High2026CVSS 7.5CWE-200

cve2026 · wordpress · wp-plugin · ymc-filter · disclosure · unauth

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website