Description
The QuickEdit module does not properly check access to fields in some circumstances, which can lead to unintended disclosure of field data. Sites are only affected if the QuickEdit module (which comes with the Standard profile) is installed.
Remediation
References
Related Vulnerabilities
WordPress Plugin WooCommerce Save For Later Cart Enhancement PHP Object Injection (1.0.6)
WordPress Plugin Scout bazar Cross-Site Scripting (1.3.3)
MODX Improper Restriction of XML External Entity Reference Vulnerability (CVE-2020-25911)
XOOPS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-12138)