The Redirect Redirection plugin for WordPress has a security issue that could allow attackers with a user account to access data that they shouldn’t have access to. This vulnerability affects versions up to and including version 1.1.3 of the plugin. Subscribers and users with higher levels of access could use the LoadTab function, which is called via an AJAX action, to view data that they shouldn’t have access to.