Description
WordPress Plugin Breadcrumb NavXT is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Breadcrumb NavXT version 6.1.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 6.2.0 or latest
References
http://www.waraxe.us/advisory-108.html
https://plugins.svn.wordpress.org/breadcrumb-navxt/trunk/readme.txt
Related Vulnerabilities
Nexus Repository Manager Incorrect Authorization Vulnerability (CVE-2018-16620)
WordPress Plugin Newsletters Multiple Vulnerabilities (4.6.5.3)
WordPress Plugin Gallery-Flagallery Photo Portfolio Cross-Site Scripting (2.70)
WordPress Ultimate Member Plugin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-8520)
Ampache Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2024-51487)