Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-3345
HistoryJul 31, 2023 - 10:15 a.m.

Information disclosure

2023-07-3110:15:00
PRIOn knowledge base
www.prio-n.com
4
masteriyo
wordpress
plugin
vulnerability
user information
disclosure
rest api
endpoints
security

0.004 Low

EPSS

Percentile

74.0%

The LMS by Masteriyo WordPress plugin before 1.6.8 does not properly safeguards sensitive user information, like other user’s email addresses, making it possible for any students to leak them via some of the plugin’s REST API endpoints.

CPENameOperatorVersion
masteriyolt1.6.8

0.004 Low

EPSS

Percentile

74.0%