CVE-2024-0212
Cloudflare WordPress plugin enables information disclosure of Cloudflare API (for low privileged users)
The Cloudflare Wordpress plugin was found to be vulnerable to improper authentication. The vulnerability enables attackers with a lower privileged account to access data from the Cloudflare API.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Affected products
Cloudflare · Cloudflare-WordPressWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →