← volver
CVE-2022-2376

Directorist < 7.3.1 - Unauthenticated Email Address Disclosure

EPSS 1.4%CWE-862
The Directorist WordPress plugin before 7.3.1 discloses the email address of all users in an AJAX action available to both unauthenticated and any authenticated users

¿Quieres saber si tu infraestructura está expuesta a esto?

Hablar con TrueHacking →