CVE-2022-3691
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
21/11/2022
Last modified:
30/04/2025
Description
The DeepL Pro API translation plugin WordPress plugin before 1.7.5 discloses sensitive information (including the DeepL API key) in files that are publicly accessible to an external, unauthenticated visitor.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:fluenx:deepl_pro_api_translation:*:*:*:*:*:wordpress:*:* | 1.7.5 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



