Tag
high
advisory
CVE-2026-4031 - Database Backup for WordPress Plugin Authorization Bypass
2 rules 1 TTP 1 CVECVE-2026-4031 is an authorization bypass vulnerability in the Database Backup for WordPress plugin (<= 2.5.2) that allows unauthenticated attackers to intercept database backup files by manipulating the backup directory via the wp_db_temp_dir parameter, leading to sensitive information exposure.
Database Backup for WordPress plugin <= 2.5.2
wordpress
authorization-bypass
sensitive-data-exposure
cve
2r
1t
1c
high
advisory
Valtimo Sensitive Data Exposure via Excessive HTTP Request/Response Logging (CVE-2026-44516)
1 ruleThe `LoggingRestClientCustomizer` in Valtimo's `web` module automatically intercepts all outgoing HTTP calls and logs the full request/response body and headers, potentially exposing sensitive information like credentials, personal data, and session tokens via error messages logged at ERROR level (CVE-2026-44516).
Valtimo
sensitive-data-exposure
logging
1r