CVE-2022-23984: WordPress wpDiscuz plugin <= 7.3.11 - Sensitive Information Disclosure
Published Feb 21, 2022
·Updated
Sensitive information disclosure discovered in wpDiscuz WordPress plugin (versions <= 7.3.11).
Affected Software
1 affected component
gVectors Wpdiscuz Wordpress<=7.3.11
Remediation
Information
Update to 7.3.12 or higher version.
Event History
Feb 21, 2022
CVE Published
via MITRE·05:49 PM
Data Sourced
via MITRE·05:49 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-23984?
The severity of CVE-2022-23984 is high with a CVSS score of 7.5.
2
Which versions of the wpDiscuz WordPress plugin are affected by CVE-2022-23984?
Versions of wpDiscuz WordPress plugin up to and including 7.3.11 are affected by CVE-2022-23984.
3
How can I fix CVE-2022-23984 in the wpDiscuz WordPress plugin?
To fix CVE-2022-23984 in the wpDiscuz WordPress plugin, you should update to version 7.3.12 or later.
4
Where can I find more information about CVE-2022-23984?
You can find more information about CVE-2022-23984 at the following references: [Patchstack](https://patchstack.com/database/vulnerability/wpdiscuz/wordpress-wpdiscuz-plugin-7-3-11-sensitive-information-disclosure) and [WordPress](https://wordpress.org/plugins/wpdiscuz/#developers).
5
What is the CWE of CVE-2022-23984?
The CWE of CVE-2022-23984 is CWE-200.