Yame Link In Bio WordPress Plugin Sensitive Information Exposure Vulnerability

Vulnerability

A vulnerability allowing sensitive information exposure has been identified in the Yame | Link In Bio plugin for WordPress, affecting all versions through 0.9.0. The issue arises from a publicly accessible phpinfo.php script, which allows unauthenticated attackers to view potentially sensitive information.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive information, which could be misused for further attacks or to compromise the privacy of users or the integrity of the WordPress site.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM