CVE-2024-10285
09.11.2024, 03:15
The CE21 Suite plugin for WordPress is vulnerable to sensitive information disclosure via the plugin-log.txt in versions up to, and including, 2.2.0. This makes it possible for unauthenticated attackers to log in the user associated with the JWT token.Enginsight
Vendor | Product | Version |
---|---|---|
ce21 | ce21-suite | 𝑥 ≤ 2.2.0 |
ce21 | ce21_suite | 𝑥 ≤ 2.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration