Description
WordPress Plugin Profile Builder-User Profile & User Registration Forms is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Profile Builder-User Profile & User Registration Forms version 3.9.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.9.1 or latest
References
Related Vulnerabilities
Joomla! Core 3.x.x Cross-Site Scripting (3.1.0 - 3.9.23)
WordPress Plugin YouTube Embed Cross-Site Scripting (5.2.1)
WordPress Plugin FooBox Image Lightbox Security Bypass (2.6.3)
WordPress Plugin CM Download Manager Code Injection (2.0.3)
WordPress Plugin Annonces 'theme.php' Arbitrary File Upload (1.2.0.1)