Skip to content

Known CVE

WordPress WPQA <5.5 - Improper Access Control

WordPress WPQA plugin before 5.5 is susceptible to improper access control. The plugin lacks authentication in a REST API endpoint. An attacker can potentially discover private questions sent between users on the site.

CVE-2022-1598

Medium2022CVSS 5.3CWE-306

cve2022 · wordpress · wp-plugin · wpqa · idor · wpscan · 2code · vuln

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website