CVE Published: 19/04/2022 |
CVE Updated: 02/08/2024 |
CVE Year: 2022 Source: Wordfence |
Vendor: bepopiacompliant |
Product: Be POPIA Compliant Status : PUBLISHED
CVE-2022-1186 Description
The WordPress plugin Be POPIA Compliant exposed sensitive information to unauthenticated users consisting of site visitors emails and usernames via an API route, in versions up to an including 1.1.5.
Metrics
CVSS Version: 3.1 |
Base Score: 5.3 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N