Description
WordPress Plugin Yoast SEO is prone to an information disclosure vulnerability. Attackers can exploit this issue to disclose plugin settings and post metadata relative to focus and terms keywords. WordPress Plugin Yoast SEO version 3.2.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.2.5 or latest
References
https://www.wordfence.com/blog/2016/05/yoast-seo-vulnerability/
https://www.pluginvulnerabilities.com/2016/05/11/information-disclosure-vulnerability-in-yoast-seo/
Related Vulnerabilities
WordPress Plugin LifterLMS-WP LMS for eLearning, Online Courses, & Quizzes Security Bypass (4.21.1)
WordPress 3.7.x Multiple Vulnerabilities (3.7 - 3.7.20)
WordPress Plugin CONTUS VBLOG-Video Blogging 'save.php' Arbitrary File Upload (1.0)
WordPress Plugin Filter & Grids Local File Inclusion (2.8.32)
WordPress Plugin SEO Friendly Images Cross-Site Scripting (3.0.4)