Information leakage vulnerability in WP 2FA – Two-factor authentication for WordPress 2.6.3

The Two-factor authentication for WordPress plugin, specifically version 2.6.3 and below, has a vulnerability that exposes sensitive information through publicly available log files. This means that anyone who is not logged into the system can access and view potentially private information contained in these log files.

Detected in:

WP 2FA – Two-factor authentication for WordPress fixed vulnerable versions: >= * <= 2.6.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.