cleantalk
Vulnerabilities and Security Researches

Directorist – WordPress Business Directory Plugin with Classified Ads Listings, CVE-2022-2376

CVE, Research URL

CVE-2022-2376

Published on
Sep 05, 2022
Research Description
The Directorist WordPress plugin before 7.3.1 discloses the email address of all users in an AJAX action available to both unauthenticated and any authenticated users
Affected versions
max 7.3.1.
Status
vulnerable