CVE-2024-1769
JM Twitter Cards <= 14 - Information Exposure via Meta Description
CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
0th
The JM Twitter Cards plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 14 via the meta description data. This makes it possible for unauthenticated attackers to view password protected post content when viewing the page source.
| CWE | CWE-200 |
| Vendor | jmlapam |
| Product | jm twitter cards |
| Published | Mar 5, 2024 |
| Last Updated | Apr 8, 2026 |
Stay Ahead of the Next One
Get instant alerts for jmlapam jm twitter cards
Be the first to know when new medium vulnerabilities affecting jmlapam jm twitter cards are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Affected Versions
jmlapam / JM Twitter Cards
0 โค 14
References
wordfence.com: https://www.wordfence.com/threat-intel/vulnerabilities/id/b48e5973-6923-47cc-a660-ecc989f540f8?source=cve wordpress.org: https://wordpress.org/plugins/jm-twitter-cards/ plugins.trac.wordpress.org: https://plugins.trac.wordpress.org/changeset?sfp_email=&sfph_mail=&reponame=&old=3044066%40jm-twitter-cards&new=3044066%40jm-twitter-cards&sfp_email=&sfph_mail=
Credits
Krzysztof Zajฤ
c