Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
5.3
CVE-2022-46846: WP OnlineSupport Plugin Allows Unauthorized Access to Posts
CVE-2022-46846
Summary
The WP OnlineSupport plugin has a security issue that allows unauthorized users to access posts they shouldn't be able to see. This affects the Trending/Popular Post Slider and Widget plugin, and users should update to the latest version to fix it. If not patched, an attacker could gain access to sensitive information.
Original title
Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Trending/Popular Post Slider and Widget allows Exploiting Incorrectly Configured Access Control Security Levels.This issue ...
Original description
Missing Authorization vulnerability in WP OnlineSupport, Essential Plugin Trending/Popular Post Slider and Widget allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Trending/Popular Post Slider and Widget: from n/a through 1.5.7.
nvd CVSS3.1
5.3
Vulnerability type
CWE-862
Missing Authorization
Published: 13 Dec 2024 · Updated: 15 Jun 2026 · First seen: 7 Mar 2026