Description
WordPress Plugin AccessAlly is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin AccessAlly version 3.5.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.5.7 or latest
References
Related Vulnerabilities
WordPress Plugin Blog2Social:Social Media Auto Post & Scheduler Cross-Site Scripting (5.8.1)
WordPress Plugin CYSTEME Finder, the admin files explorer Unspecified Vulnerability (1.7)
WordPress Plugin WooCommerce Privilege Escalation (3.5.0)
Piwigo Improper Access Control Vulnerability (CVE-2016-10084)