S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jun 29, 2026

CVE-2026-10823 Scanner

CVE-2026-10823 Scanner - Information Disclosure vulnerability in YMC Filter WordPress

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
3.3k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2026-10823
7.5
CVSShigh
Exploitable remotely over the internet · no authentication required.

The YMC Filter WordPress plugin before 3.11.3 does not properly authorize access to one of its REST API endpoints and does not validate a user-supplied query parameter, allowing unauthenticated attackers to retrieve the titles and content of private, draft, and other non-public posts.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
YMC Filter
AFFECTED< 3.11.3SAFE ✓≥ 3.11.3
Updated Aug 22, 2026View on NVD →
Detail

The YMC Filter WordPress plugin is widely used by website administrators seeking to enhance their site's filtration capabilities. It allows users to create complex filtering mechanisms, making it popular in e-commerce and content-heavy websites. The plugin is designed with flexibility and customization in mind, offering site managers the ability to tailor search experiences according to their needs. Its popularity stems not only from functionality but also from ease of installation and use within the WordPress environment. The YMC Filter plugin is maintained by the YMC team and receives regular updates to ensure compatibility and security. As a result, it attracts a large user base of WordPress site owners prioritizing efficient search and filter functionalities.

The Information Disclosure vulnerability found in the YMC Filter WordPress plugin arises from a broken access control in its REST API endpoint. This defect is due to improper authorization practices and inadequate validation measures. Consequently, unauthenticated attackers can exploit this flaw to query the API endpoint and retrieve sensitive, non-public post content. The vulnerability affects multiple parts of the plugin, particularly the endpoint responsible for handling private and unpublished posts. Users who do not keep their WordPress plugin updated run the risk of exposing sensitive data to unauthorized individuals. This vulnerability can impact site credibility and user trust significantly if exploited.

Technical details of this vulnerability highlight its root in the REST API endpoint /wp-json/ymc/v1/posts/filter. This endpoint fails to verify user authentication status effectively, allowing unauthenticated users to manipulate parameters to access protected data. Key parameters in this context include 'filter_id' and 'post_status', with common exploit scenarios involving setting 'post_status' to 'draft' to access non-public content. Matchers in the scan procedure look for a status code of 200 and specific JSON responses to confirm the presence of the vulnerability. Understanding these endpoints and parameters is crucial for security teams aiming to protect against this type of attack.

The potential effects of exploiting the Information Disclosure vulnerability are significant. Malicious actors could gain access to unpublished posts, sensitive drafts, and any other non-public content stored in the WordPress site. This exposure could lead to data leaks, intellectual property theft, and unauthorized redistribution of sensitive information. Furthermore, the breach could undermine user trust and tarnish the website's reputation. Site owners might also face legal and compliance issues if personally identifiable information (PII) or proprietary information is compromised through this vulnerability.

REFERENCES

Solution Advice
  • Update YMC Filter WordPress plugin to version 3.11.3 or later to patch the vulnerability.
  • Regularly audit and monitor API endpoints to ensure authentication and authorization measures are robust.
  • Implement additional access control checks and validations on sensitive endpoints.
  • Perform regular security assessments of plugins and extensions in the WordPress environment.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.