vulnerability
WordPress Plugin: colorlib-coming-soon-maintenance: CVE-2024-1473: Improper Access Control
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:P/I:N/A:N) | Mar 19, 2024 | Nov 6, 2025 | Nov 6, 2025 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Mar 19, 2024
Added
Nov 6, 2025
Modified
Nov 6, 2025
Description
The Coming Soon and Maintenance Mode by Colorlib plugin for WordPress is vulnerable to Information Exposure in all versions up to, and including, 1.0.99 via the REST API. This makes it possible for unauthenticated attackers to obtain post and page contents via REST API thus bypassing maintenance mode protection provided by the plugin.
Solution
colorlib-coming-soon-maintenance-plugin-cve-2024-1473
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.