The Advanced Woo Search plugin version through 1.99 for Wordpress suffers from a sensitive information disclosure vulnerability in every ajax search request via the sql field to includes/class-aws-search.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-04-24T22:44:20

Updated: 2024-08-04T11:48:57.799Z

Reserved: 2020-04-22T00:00:00

Link: CVE-2020-12070

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-04-24T23:15:11.577

Modified: 2020-05-01T18:23:13.093

Link: CVE-2020-12070

cve-icon Redhat

No data.