CVE-2022-1186
19.04.2022, 21:15
The WordPress plugin Be POPIA Compliant exposed sensitive information to unauthenticated users consisting of site visitors emails and usernames via an API route, in versions up to an including 1.1.5.Enginsight
| Vendor | Product | Version |
|---|---|---|
| web-x | be_popia_compliant | 𝑥 ≤ 1.1.5 |
𝑥
= Vulnerable software versions
References