GHSA-h3cp-h7xg-mwjxMediumCVSS 5.3
The New User Approve WordPress plugin before 3.2.10 does not properly verify authentication on a...
🔗 CVE IDs covered (1)
📋 Description
The New User Approve WordPress plugin before 3.2.10 does not properly verify authentication on a set of integration REST API routes when the integration is unconfigured, allowing unauthenticated attackers to retrieve personal data (id, username, email address and registration date) of registered users.