CVE-2026-14195
Brizy โ Page Builder < 2.8.18 - Contributor+ Sensitive Information Disclosure via get_post_info
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
The Brizy WordPress plugin before 2.8.18 does not properly verify authorization on a request handler before returning post content, allowing users with the Contributor role or higher to read the content of arbitrary posts, including other users' private, pending, and draft posts.
| Vendor | unknown |
| Product | brizy |
| Published | Aug 1, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown brizy
Be the first to know when new unknown vulnerabilities affecting unknown brizy are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / Brizy
0 < 2.8.18
References
Credits
Mustafa Ahmed WPScan