Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17142 | The WP-Stateless – Google Cloud Storage plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check on the dismiss_notices() function in all versions up to, and including, 3.4.0. This makes it possible for authenticated attackers, with subscriber-level access and above, to update arbitrary option values to the current time, which may completely take a site offline. |
Wed, 08 Apr 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | WP-Stateless – Google Cloud Storage <= 3.4.0 - Missing Authorization to Limited Arbitrary Options Update |
Wed, 25 Feb 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 06 May 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Udx
Udx wp-stateless |
|
| Weaknesses | CWE-862 | |
| CPEs | cpe:2.3:a:udx:wp-stateless:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Udx
Udx wp-stateless |
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T17:11:01.852Z
Reserved: 2024-02-08T21:00:39.214Z
Link: CVE-2024-1385
Updated: 2024-08-01T18:40:20.409Z
Status : Modified
Published: 2024-04-06T04:15:10.747
Modified: 2026-04-08T18:20:36.183
Link: CVE-2024-1385
No data.
OpenCVE Enrichment
No data.
EUVD