CVE-2024-13818

Registration Forms – User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form & Content Restriction <= 3.8.3.9 - Sensitive Information Exposure via Log Files

The Registration Forms – User Registration Forms, Invitation-Based Registrations, Front-end User Profile, Login Form & Content Restriction plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 3.8.3.9 through publicly exposed log files. This makes it possible for unauthenticated attackers to view potentially sensitive information about users contained in the exposed log files.


We have discovered 386 live websites that are affected by CVE-2024-13818.

Run a Free Instant Scan




Affected Software

Product  Pie Register
Category Wordpress Plugins
Vulnerable Domains386 live websites (51% of Pie Register install base)
Vulnerable Versions
  • from 0 through 3.8.3.9
Vulnerable Versions Count36 versions ( 90% of all versions)


Common Weakness Enumeration

CWE-532 Insertion of Sensitive Information into Log File



Details

  • Published - Feb 21, 2025
  • Updated - Feb 21, 2025

Credits

  • wesley (finder)

Website Distribution by Country

Number of websites using CVE-2024-13818
United States76 websites



Germany51 websites
Spain41 websites
Italy19 websites
France15 websites
GB12 websites
Turkey12 websites
Poland11 websites
Hungary11 websites
Brazil9 websites

Website Distribution by TLD

Number of websites using CVE-2024-13818
.com140 websites
.org32 websites
.de29 websites
.net19 websites
.es17 websites
.it15 websites
.pl10 websites
.ru6 websites
.com.br6 websites
.eu6 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2024-13818

Top websites that are affected by CVE-2024-13818. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
******.*******.com United States***,***
************.de Germany***,***
***********.org Italy***,***
************.it United States***,***
****.com Spain*,***,***
*******************.org United States*,***,***
*******.pl Poland*,***,***
*********.de Germany*,***,***
**.***********.org Argentina*,***,***
*****************.ro Romania*,***,***
See full domain list

FAQ

CVE-2024-13818 is Insertion of Sensitive Information into Log File in Pie Register
A total of 386 websites have been identified as vulnerable to CVE-2024-13818, based on global website indexing conducted by WebTechSurvey.
The Pie Register is affected by the CVE-2024-13818 vulnerability.
Pie Register versions up to and including 3.8.3.9 are vulnerable to CVE-2024-13818.