Vulnerability CVE-2024-38787


Published: 2024-08-13

Description:
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Codection Import and export users and customers allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Import and export users and customers: from n/a through 1.26.8.

Type:

CWE-200

(Information Exposure)

 References:
https://patchstack.com/database/vulnerability/import-users-from-csv-with-meta/wordpress-import-and-export-users-and-customers-plugin-1-26-8-sensitive-information-via-imported-file-vulnerability?_s_id=cve

Copyright 2026, cxsecurity.com

 

Back to Top