The Author Box, Guest Author and Co-Authors for Your Posts – Molongui plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.7.4 via the 'ma_debu' parameter. This makes it possible for unauthenticated attackers to extract sensitive data including post author emails and names if applicable.
Advisories
Source ID Title
EUVD EUVD EUVD-2023-59206 The Author Box, Guest Author and Co-Authors for Your Posts – Molongui plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.7.4 via the 'ma_debu' parameter. This makes it possible for unauthenticated attackers to extract sensitive data including post author emails and names if applicable.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 17 Jun 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Wordfence

Published:

Updated: 2025-06-17T21:29:25.280Z

Reserved: 2023-12-20T15:36:22.311Z

Link: CVE-2023-7014

cve-icon Vulnrichment

Updated: 2024-08-02T08:50:07.710Z

cve-icon NVD

Status : Modified

Published: 2024-02-05T22:15:58.943

Modified: 2024-11-21T08:45:02.353

Link: CVE-2023-7014

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.