The Autoptimize WordPress plugin before 3.1.0 uses an easily guessable path to store plugin's exported settings and logs.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/95ee1b9c-1971-4c35-8527-5764e9ed64af | Exploit Third Party Advisory |
https://wpscan.com/vulnerability/95ee1b9c-1971-4c35-8527-5764e9ed64af | Exploit Third Party Advisory |
Configurations
History
21 Nov 2024, 07:34
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
References | () https://wpscan.com/vulnerability/95ee1b9c-1971-4c35-8527-5764e9ed64af - Exploit, Third Party Advisory |
14 Jul 2023, 19:23
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-01-02 22:15
Updated : 2025-04-10 18:15
NVD link : CVE-2022-4057
Mitre link : CVE-2022-4057
CVE.ORG link : CVE-2022-4057
JSON object : View
Products Affected
optimizingmatters
- autooptimize
CWE
CWE-425
Direct Request ('Forced Browsing')