The Relevanssi Search plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check in all versions up to, and including, 4.22.0. This makes it possible for unauthenticated attackers to export the query log data.
id: CVE-2024-1380
info:
name: Relevanssi (A Better Search) <= 4.22.0 - Query Log Export
author:
...