Description
The Under Construction / Maintenance Mode from Acurax plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.6 via the 'acx_csma_subscribe_ajax' function. This can allow authenticated attackers to extract sensitive data such as names and email addresses of subscribed visitors.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-59121 | The Under Construction / Maintenance Mode from Acurax plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.6 via the 'acx_csma_subscribe_ajax' function. This can allow authenticated attackers to extract sensitive data such as names and email addresses of subscribed visitors. |
References
History
Wed, 08 Apr 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Under Construction / Maintenance Mode from Acurax <= 2.6 - Authenticated (Subscriber+) Sensitive Information Exposure | |
| Weaknesses | CWE-200 |
Fri, 27 Feb 2026 06:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 07 Feb 2025 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Acurax
Acurax under Construction \/ Maintenance Mode |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:a:acurax:under_construction_\/_maintenance_mode:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Acurax
Acurax under Construction \/ Maintenance Mode |
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T16:43:29.542Z
Reserved: 2023-12-18T15:08:35.575Z
Link: CVE-2023-6922
Updated: 2024-08-02T08:42:08.541Z
Status : Modified
Published: 2024-02-28T09:15:40.673
Modified: 2026-04-08T17:17:17.000
Link: CVE-2023-6922
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD