The Quttera Web Malware Scanner WordPress plugin before 3.4.2.1 doesnt restrict access to detailed scan logs, which allows a malicious actor to discover local paths and portions of the sites code
Name | Vendor | Start Version | End Version |
---|---|---|---|
Quttera_web_malware_scanner | Quttera | * | 3.4.2.1 (excluding) |