The DeepL Pro API translation plugin WordPress plugin before 1.7.5 discloses sensitive information (including the DeepL API key) in files that are publicly accessible to an external, unauthenticated visitor.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2022-11-21T00:00:00
Updated: 2024-08-03T01:14:03.244Z
Reserved: 2022-10-26T00:00:00
Link: CVE-2022-3691
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-11-21T11:15:20.750
Modified: 2023-11-07T03:51:39.070
Link: CVE-2022-3691
Redhat
No data.