The Wp Edit Password Protected WordPress plugin before 1.3.5 allows protecting page content, but this protection can be bypassed by using the REST API.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 02 Sep 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Wp Edit Password Protected WordPress plugin before 1.3.5 allows protecting page content, but this protection can be bypassed by using the REST API. | |
| Title | Wp Edit Password Protected < 1.3.5 - Protection Bypass via REST API | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2026-09-02T14:57:35.677Z
Reserved: 2025-08-13T13:47:39.507Z
Link: CVE-2025-8945
Updated: 2026-09-02T14:43:00.284Z
Status : Received
Published: 2026-09-02T15:17:36.993
Modified: 2026-09-02T15:17:36.993
Link: CVE-2025-8945
No data.
OpenCVE Enrichment
No data.
Weaknesses