WordPress Plugin Vulnerabilities

WP Legal Pages < 3.7.1 - Unauthenticated API Secret Disclosure

Description

The plugin does not include an authorization check on a REST route that returns stored account data, allowing unauthenticated visitors to retrieve the connected service's API secret and account details, which can then be used to disconnect the plugin's integration.

Proof of Concept

Affects Plugins

Fixed in 3.7.1

References

Classification

Type
ACCESS CONTROLS
CWE

Miscellaneous

Original Researcher
Vaibhav Narkhede
Submitter
Vaibhav Narkhede
Verified
Yes

Timeline

Publicly Published
2026-08-24 (about 3 days ago)
Added
2026-08-24 (about 2 days ago)
Last Updated
2026-08-24 (about 2 days ago)

Other