Description
WordPress Plugin Cherry Team Members is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Cherry Team Members version 1.4.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.4.2 or latest
References
Related Vulnerabilities
concrete5 Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-5107)
WebLogic CVE-2023-22072 Vulnerability (CVE-2023-22072)
WordPress Plugin Easy WP SMTP Security Bypass (1.4.2)
WordPress Plugin LeaderBoard Cross-Site Request Forgery (1.1.1)
AngularJS Inefficient Regular Expression Complexity Vulnerability (CVE-2022-25844)