WordPress Plugin Vulnerabilities

WPGraphQL < 0.3.0 - Multiple Vulnerabilities

Description

Without authorisation, weak access controls allow us to:

* Create administrative users
* Post comments on articles bypassing article restrictions and global moderation
* Retrieve content of password-protected posts/articles/pages
* Retrieve full list of registered users in the platform
* Retrieve full list of media, comments, themes and plugins with one simple request

The test was performed locally using WordPress 5.1.1 and WPGraphQL 0.2.3

Affects Plugins

Fixed in 0.3.0

References

Miscellaneous

Original Researcher
Simone Quatrini
Submitter
Simone Quatrini
Submitter twitter
Verified
No

Timeline

Publicly Published
2019-05-08 (about 6 years ago)
Added
2019-05-21 (about 6 years ago)
Last Updated
2020-09-22 (about 5 years ago)

Other