plugin

One Click Close Comments Vulnerabilities

1 known security issue reported for the One Click Close Comments WordPress plugin. Most recent disclosed Jul 26, 2024.

1 medium

Running One Click Close Comments on your site? Check whether your installed version is affected.

Scan your site free

One Click Close Comments <= 2.7.1 - Unauthenticated Full Path Disclosure

medium

The One Click Close Comments plugin for WordPress is vulnerable to Full Path Disclosure in all versions up to, and including, 2.7.1. This is due to the plugin utilizing bootstrap and leaving test files with display_errors on. This makes it possible for unauthenticated attackers to retrieve the full path of the web appl...

CVSS:
5.3
Affected:
up to 2.7.1
Fixed in:
3.0
Disclosed:
Jul 26, 2024

CVE-2024-6546 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database