Decent Comments < 3.0.2 - Unauthenticated Information Exopsure
highThe Decent Comments plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to 3.0.2 (exclusive). This makes it possible for unauthenticated attackers to extract sensitive user or configuration data.
- CVSS:
- 7.5
- Affected:
- up to 3.0.2
- Fixed in:
- 3.0.2
- Disclosed:
- Jun 11, 2026