WordPress Plugin Vulnerabilities

SupportCandy 3.3.6 - 3.5.2 - Unauthenticated Ticket Content Disclosure via Auth Code Leak

Description

The plugin does not validate a submitted per-ticket authorization code before disclosing the real code to the requester, allowing unauthenticated users to read the contents of any support ticket.

Proof of Concept

Affects Plugins

Fixed in 3.5.3

References

Classification

Type
SENSITIVE DATA DISCLOSURE
CWE

Miscellaneous

Original Researcher
Mitre Osman Hussein
Submitter
Jasper Weijts (Onvio Pentesting)
Submitter website
Verified
Yes

Timeline

Publicly Published
2026-09-07 (about 2 days ago)
Added
2026-09-07 (about 1 day ago)
Last Updated
2026-09-07 (about 1 day ago)

Other