CVE-2022-1186

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
19/04/2022
Last modified:
08/04/2026

Description

The WordPress plugin Be POPIA Compliant exposed sensitive information to unauthenticated users consisting of site visitors emails and usernames via an API route, in versions up to an including 1.1.5.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:web-x:be_popia_compliant:*:*:*:*:*:wordpress:*:* 1.1.5 (including)