6.5
CVSSv3

CVE-2022-4384

Published: 06/02/2023 Updated: 07/11/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

The Stream WordPress plugin prior to 3.9.2 does not prevent users with little privileges on the site (like subscribers) from using its alert creation functionality, which may enable them to leak sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

xwp stream