Vulnerabilities (CVE)

Filtered by vendor Advancedcustomfields Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-40696 1 Advancedcustomfields 1 Advanced Custom Fields 2024-01-11 N/A 7.5 HIGH
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in WP Engine Advanced Custom Fields (ACF).This issue affects Advanced Custom Fields (ACF): from 3.1.1 through 6.0.2.
CVE-2021-20865 1 Advancedcustomfields 1 Advanced Custom Fields 2021-12-15 5.0 MEDIUM 7.5 HIGH
Advanced Custom Fields versions prior to 5.11 and Advanced Custom Fields Pro versions prior to 5.11 contain a missing authorization vulnerability in browsing database which may allow a user to browse unauthorized data via unspecified vectors.