Описание
Gravity Forms plugin leak hashed passwords
common.php in the Gravity Forms plugin before 2.4.9 for WordPress can leak hashed passwords because user_pass is not considered a special case for a $current_user->get($property) call.
Пакеты
Наименование
wp-premium/gravityforms
composer
Затронутые версииВерсия исправления
< 2.4.9
2.4.9
Связанные уязвимости
CVSS3: 7.5
nvd
больше 5 лет назад
common.php in the Gravity Forms plugin before 2.4.9 for WordPress can leak hashed passwords because user_pass is not considered a special case for a $current_user->get($property) call.