The Locker Content plugin for WordPress is vulnerable to...
Moderate severity
Unreviewed
Published
Nov 25, 2025
to the GitHub Advisory Database
•
Updated Apr 8, 2026
Description
Published by the National Vulnerability Database
Nov 25, 2025
Published to the GitHub Advisory Database
Nov 25, 2025
Last updated
Apr 8, 2026
The Locker Content plugin for WordPress is vulnerable to Sensitive Information Exposure in version 1.0.0 via the 'lockerco_submit_post' AJAX endpoint. This makes it possible for unauthenticated attackers to extract content from posts that has been protected by the plugin.
References