MEDIUM
hcabrera
CVE published 2026-10-01
CVE-2026-92548
The WP Popular Posts plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.4.2. This vulnerability allows unauthenticated attackers to extract sensitive edit-context fields from non-public post objects, including raw title, raw content body, password, meta, status, and guid. Defenders should assess exposure and prioritize verification and remediation [truncated]