Description
WordPress Plugin User Profile Builder-Beautiful User Registration Forms, User Profiles & User Role Editor is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin User Profile Builder-Beautiful User Registration Forms, User Profiles & User Role Editor version 3.9.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.9.1 or latest
References
Related Vulnerabilities
WordPress Plugin Battle Suit for Divi Security Bypass (1.10.1)
WordPress Plugin Slideshow Information Disclosure (2.2.21)
WordPress Plugin WP REST API (WP API) Information Disclosure (1.2)
WordPress Plugin WP Server Health Stats Malicious Code (1.7.6)
WordPress Plugin Localize My Post Local File Inclusion (1.0)