Description
WordPress Plugin Acumbamail is prone to an information disclosure vulnerability. Attackers can exploit this issue by sniffing network traffic or via a Man-in-the-Middle (MitM) attack to obtain sensitive information that may help in launching further attacks. WordPress Plugin Acumbamail version 1.0.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.4.1 or latest
References
Related Vulnerabilities
WordPress Plugin All-In-One Security (AIOS)-Security and Firewall Cross-Site Request Forgery (4.4.3)
WordPress Plugin Debug Bar Multiple Unspecified Vulnerabilities (0.8.4)
Liferay Portal URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2021-33331)
WordPress Plugin FireCask Like & Share Button Cross-Site Scripting (1.1.5)