CVE-2024-30514: WordPress Paid Memberships Pro – Payfast Gateway Add On plugin <= 1.4.1 - Sensitive Data Exposure via Log File vulnerability
Published Mar 29, 2024
·Updated
Insertion of Sensitive Information into Log File vulnerability in Paid Memberships Pro Paid Memberships Pro – Payfast Gateway Add On.This issue affects Paid Memberships Pro – Payfast Gateway Add On: from n/a through 1.4.1.
Affected Software
1 affected component
Paid Memberships Pro Paid Memberships Pro – Payfast Gateway Add On<=1.4.1
Remediation
Information
Update to 1.4.2 or a higher version.
Event History
Mar 29, 2024
CVE Published
via MITRE·03:40 PM
Data Sourced
via MITRE·03:40 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-30514?
CVE-2024-30514 has been rated as a moderate severity vulnerability.
2
How do I fix CVE-2024-30514?
To fix CVE-2024-30514, upgrade the Paid Memberships Pro – Payfast Gateway Add On plugin to version 1.4.2 or later.
3
What kind of information is exposed in CVE-2024-30514?
CVE-2024-30514 exposes sensitive information such as personal user data in log files.
4
What versions are affected by CVE-2024-30514?
CVE-2024-30514 affects the Paid Memberships Pro – Payfast Gateway Add On versions up to and including 1.4.1.
5
Is CVE-2024-30514 specific to certain platforms?
CVE-2024-30514 is applicable to the Paid Memberships Pro – Payfast Gateway Add On plugin used on WordPress.