CVE-2026-39570: WordPress 12 Step Meeting List plugin <= 3.19.9 - Sensitive Data Exposure vulnerability
Insertion of Sensitive Information Into Sent Data vulnerability in AA Web Servant 12 Step Meeting List 12-step-meeting-list allows Retrieve Embedded Sensitive Data.This issue affects 12 Step Meeting List: from n/a through <= 3.19.9.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-39570?
CVE-2026-39570 has been classified as a medium severity vulnerability due to its potential for sensitive data exposure.
How do I fix CVE-2026-39570?
To fix CVE-2026-39570, update the WordPress 12 Step Meeting List plugin to the version above 3.19.9.
What kind of sensitive data is exposed by CVE-2026-39570?
CVE-2026-39570 allows for the retrieval of embedded sensitive information contained within the plugin's data.
Which versions of the WordPress 12 Step Meeting List are affected by CVE-2026-39570?
CVE-2026-39570 affects versions of the WordPress 12 Step Meeting List plugin up to and including 3.19.9.
Who is affected by the CVE-2026-39570 vulnerability?
Users and administrators of the WordPress 12 Step Meeting List plugin versions up to 3.19.9 are affected by CVE-2026-39570.