Description
WordPress Plugin Subscribe to Comments is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may lead to further attacks. WordPress Plugin Subscribe to Comments versions prior to 2.0.4 are vulnerable.
Remediation
Update to plugin version 2.0.4 or latest
References
Related Vulnerabilities
Contao Improper Privilege Management Vulnerability (CVE-2021-37627)
Apache Traffic Server Improper Authentication Vulnerability (CVE-2021-44759)
WordPress Plugin Mongoose Page Cross-Site Scripting (1.8.3)
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.11)
WordPress Plugin underConstruction Cross-Site Scripting (1.18)