Loading HuntDB...

GHSA-hg2h-hf62-jjm8

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

The Quiz Maker plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the ays_show_results() function in all versions up to, and including, 6.5.2.4. This makes it possible for unauthenticated attackers to fetch arbitrary quiz results which can contain PII.

Related CVEs

Key Information

GHSA ID
GHSA-hg2h-hf62-jjm8
Published
February 7, 2024 9:30 AM
Last Modified
February 7, 2024 9:30 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: July 28, 2025 6:37 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.