CVE-2023-3139: Wp-Experts Protect Wp Admin
Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.
The Protect WP Admin WordPress plugin before 4.0 discloses the URL of the admin panel via a redirection of a crafted URL, bypassing the protection offered.
Affected products
- Wp-Experts Protect Wp Admin: before 4.0 (fixed in 4.0)
Published 2023-07-04. Last modified 2026-06-17.