CVE-2023-1263EPSS p69.3%
CVE-2023-1263CVE-2023-1263
niteothemes / coming_soon_\&_maintenance
Description
The CMP – Coming Soon & Maintenance plugin for WordPress is vulnerable to Information Exposure in versions up to, and including, 4.1.6 via the cmp_get_post_detail function. This can allow unauthenticated individuals to obtain the contents of any non-password-protected, published post or page even when maintenance mode is enabled.
Scoring
| CVSS | 5.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
| EPSS | 1.41% probability of exploitation · percentile 69.3% · 2026-06-19T12:03:05Z |
| Last modified | 2026-06-17 |