Security Advisory

CVE-2022-2376

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-09-05 12:35:19
Last updated 2024-08-03 00:32:09
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The Directorist WordPress plugin before 7.3.1 discloses the email address of all users in an AJAX action available to both unauthenticated and any authenticated users