Description
WordPress Plugin Be POPIA Compliant is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Be POPIA Compliant version 1.1.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.1.6 or latest
References
https://www.wordfence.com/vulnerability-advisories/#CVE-2022-1186
https://plugins.svn.wordpress.org/be-popia-compliant/trunk/readme.txt
Related Vulnerabilities
WordPress Plugin TeraWallet-For WooCommerce Insecure Direct Object Reference (1.4.3)
Microsoft SQL Server Other Vulnerability (CVE-2002-1872)
MediaWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2021-36129)
Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-7061)