WP Content Protection
WP Content Protection has one disclosed vulnerability in the WordSec catalog, all reported in 2025; it remains unpatched as of September 2026. Their average CVSS score is 4.3, and the most serious one scores 4.3 out of 10.
The most common weakness is Cross-Site Request Forgery (CSRF), behind 1 of the records (100%).
The one issue recorded for WP Content Protection has no published fix yet, which makes virtual patching the only reliable mitigation. The oldest unresolved one dates back to 2025.
All of these findings were reported by Nguyen Xuan Chien. WP Content Protection is installed on roughly 60 WordPress sites, so each unpatched flaw has a wide blast radius. The current release is tested up to WordPress 4.1.42.
CVE-2025-58670WP Content Protection <= 1.3 - Cross-Site Request Forgery
Read the full analysisVulnerability Records

WP Content Protection
Author
Shankaranand Maurya
This plugin is used to protect the content.Content protection is done by three ways : Content protection by logged in user. Content protection by password. Content protection by User roles. It will works for any post, page and custom post type also. Feature : You can add content protection module on any page,post or custom post type. You can apply any one mechanism or all in one post. When content will protected then a message will displayed.Now you can update the message from admin area. Follow : Settings => wp content protection . Click here for plugin settins. New Feature : I have added the two new Feature. 1: Using by shortcode : `[wpcp_content_protection is_logged_in=’#enter 0 or 1 #’ is_password=’#enter password#’ is_user_roles=’#enter editor roles#’]…….. content …..[/wpcp_content_protection] ` For more detailed describe of all the paramater, how can we use, please visit .Click Here 2: By using functions print this function : ` echo wpcp_protection_with_advanced_custom_field(‘#Enter customfield key#’,’#Enter value 0 or 1#’,’#enter editor roles#’,’#enter password#’);` For more detailed describe of all the paramater, how can we use, please visit .Click Here 2.1 : For password security : click here For any doubts, please email me with my email id : shankranand.mca@gmail.com : or visit :https://shankaranandmaurya.wordpress.com:
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C