Description
WordPress before 4.5.3 allows remote attackers to obtain sensitive revision-history information by leveraging the ability to read a post, related to wp-admin/includes/ajax-actions.php and wp-admin/revision.php.
Remediation
References
Related Vulnerabilities
Coppermine Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2008-7187)
PHP Use After Free Vulnerability (CVE-2016-9936)
Drupal Core 9.4.x Cross-Site Scripting (9.4.0 - 9.4.2)
phpMyFAQ Misinterpretation of Input Vulnerability (CVE-2023-0880)
Oracle HTTP Server Out-of-bounds Read Vulnerability (CVE-2021-4183)