Vulnerability Details CVE-2022-3691
The DeepL Pro API translation plugin WordPress plugin before 1.7.5 discloses sensitive information (including the DeepL API key) in files that are publicly accessible to an external, unauthenticated visitor.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 77.7%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2022-3691
-
cpe:2.3:a:fluenx:deepl_pro_api_translation:*