CVE-2023-7014: Amitzy Molongui Authorship
High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.
The Author Box, Guest Author and Co-Authors for Your Posts – Molongui plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.7.4 via the 'ma_debu' parameter. This makes it possible for unauthenticated attackers to extract sensitive data including post author emails and names if applicable.
Affected products
- Amitzy Molongui Authorship: before 4.7.5 (fixed in 4.7.5)
Published 2024-02-05. Last modified 2026-06-17.