CVE-2024-38756

CVSS 3.1 Score 5.3 of 10 (medium)

Details

Published Aug 13, 2024
CWE ID 200

Summary

CVE-2024-38756 is a vulnerability affecting Weblizar's Coming Soon plugin. The issue allows unauthorized actors to access functionality that is not properly constrained by Access Control Lists (ACLs), leading to the exposure of sensitive information. This vulnerability affects Coming Soon versions from n/a to 1.6.3. Successful exploitation could result in significant data leakage, potentially including user credentials or other confidential information. Organizations using this plugin are urged to update to a patched version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share