Description
WordPress Plugin Slack-Chat is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Slack-Chat version 1.5.5 is vulnerable; prior versions may also be affected.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
CakePHP Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-8379)
Piwigo Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2017-10678)
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-1860)
WordPress Plugin Acurax On Click Pop Under Multiple Unspecified Vulnerabilities (2.2.1)