CVE-2022-2376

The Directorist WordPress plugin before 7.3.1 discloses the email address of all users in an AJAX action available to both unauthenticated and any authenticated users
References
Configurations

Configuration 1

cpe:2.3:a:wpwax:directorist:*:*:*:*:*:wordpress:*:*

Information

Published : 2022-09-05 01:15

Updated : 2022-09-08 03:48


NVD link : CVE-2022-2376

Mitre link : CVE-2022-2376

Products Affected
No products.
CWE