Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rqch-mf8g-6cqr

Опубликовано: 11 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

The Mux Video Uploader plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.4 via the muxvideo_enqueue_settings_script. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract sensitive data including Mux API credentials.

The Mux Video Uploader plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.4 via the muxvideo_enqueue_settings_script. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract sensitive data including Mux API credentials.

EPSS

Процентиль: 15%
0.00237
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.3
nvd
25 дней назад

The Mux Video Uploader plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.1.4 via the muxvideo_enqueue_settings_script. This makes it possible for authenticated attackers, with subscriber-level access and above, to extract sensitive data including Mux API credentials.

EPSS

Процентиль: 15%
0.00237
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-200