Sensitive Information Exposure in SureMembers Plugin for WordPress
CVE-2024-12434
5.3MEDIUM
What is CVE-2024-12434?
The SureMembers plugin for WordPress has a vulnerability that allows unauthenticated attackers to exploit the REST API, leading to the exposure of sensitive information. This flaw affects all versions up to and including 1.10.6, enabling unauthorized access to restricted content that should be protected from exposure.
Affected Version(s)
SureMembers 0 <= 1.10.6