Vulnerability CVE-2022-2376


Published: 2022-09-05

Description:
The Directorist WordPress plugin before 7.3.1 discloses the email address of all users in an AJAX action available to both unauthenticated and any authenticated users

Type:

CWE-862

(Missing Authorization)

 References:
https://wpscan.com/vulnerability/437c4330-376a-4392-86c6-c4c7ed9583ad

Copyright 2026, cxsecurity.com

 

Back to Top