CVE-2024-32100: WordPress Easy Digital Downloads plugin <= 3.2.11 - Sensitive Data Exposure vulnerability
Published May 13, 2024
·Updated
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Easy Digital Downloads.This issue affects Easy Digital Downloads: from n/a through 3.2.11.
Affected Software
3 affected components
Sandhillsdev Easy Digital Downloads Wordpress<3.2.12
Easy Digital Downloads Easy Digital Downloads<=3.2.11
WordPress Easy Digital Downloads<=3.2.11
Remediation
Information
Update to 3.2.12 or a higher version.
Event History
May 13, 2024
CVE Published
via MITRE·09:22 AM
Data Sourced
via MITRE·09:22 AM
RemedyDescriptionSeverityWeakness
May 14, 2024
Data Sourced
via NVD·03:34 PM
DescriptionSeverityWeaknessAffected Software
Feb 22, 57075
Event
via NVD·07:31 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-32100?
CVE-2024-32100 is classified as a sensitivity information exposure vulnerability.
2
How do I fix CVE-2024-32100?
To fix CVE-2024-32100, update Easy Digital Downloads to version 3.2.12 or later.
3
Which versions of Easy Digital Downloads are affected by CVE-2024-32100?
CVE-2024-32100 affects Easy Digital Downloads versions up to and including 3.2.11.
4
What type of vulnerability is CVE-2024-32100?
CVE-2024-32100 is an exposure of sensitive information to unauthorized actors.
5
Who is impacted by CVE-2024-32100?
Any users of Easy Digital Downloads version 3.2.11 or earlier on WordPress are impacted by CVE-2024-32100.