Vulnerabilities / Parse.ly
Parse.ly vulnerabilities
Advisories WPSec published for Parse.ly. Other sources may list more. Its attack surface: Parse.ly on WPSec AttackSurface.
| Published | ID | Vulnerability | Severity | Fixed in |
|---|---|---|---|---|
| 2026-10-07 | WPSEC-2026-0573 | Parse.ly <= 3.24.1 - Unauthenticated Sensitive Information Exposure of API Secret via Recommended Widget | Medium 5.3 | 3.24.2 |
| 2026-10-07 | WPSEC-2026-0572 | Parse.ly <= 3.24.1 - Authenticated (Author+) Sensitive Information Exposure of Private and Draft Posts via REST API | Medium 4.3 | 3.24.2 |
| 2026-10-07 | WPSEC-2026-0571 | Parse.ly <= 3.24.1 - Server-Side Request Forgery via Remote Request Host Allowlist Bypass | Medium 5.4 | 3.24.2 |
License: CC BY 4.0