CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects WordPress.
CVE
CVE-2023-3601
Severity
MEDIUM
CVSS
4.3
EPSS
0.53%
WordPress
Original NVD Description
The Simple Author Box WordPress plugin before 2.52 does not verify a user ID before outputting information about that user, leading to arbitrary user information disclosure to users with a role as low as Contributor.
Related CVEs
Other vulnerabilities affecting the same vendor(s)