ExploitMatch
Back

CVE-2026-89331

Monitor on ThreatCluster

Description

The FluentBoards WordPress plugin before 2.1.0 does not properly restrict the member data returned by its public, token-shared board feature, allowing unauthenticated users to disclose the email addresses of a shared board's members, typically including administrators.