CVE-2026-78152
SureRank 1.6.2 - 1.10.0 - Unauthenticated Author Email Disclosure via Person Schema
CVSS Score
5.3
EPSS Score
0.0%
EPSS Percentile
0th
The SureRank SEO WordPress plugin before 1.10.1 does not exclude users' registered account email addresses from the structured data it outputs on public pages by default, allowing unauthenticated visitors to obtain the email address of any user who has published content.
| Vendor | unknown |
| Product | surerank seo |
| Published | Sep 12, 2026 |
| Last Updated | Sep 12, 2026 |
Stay Ahead of the Next One
Get instant alerts for unknown surerank seo
Be the first to know when new medium vulnerabilities affecting unknown surerank seo are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Unknown / SureRank SEO
1.6.2 < 1.10.1
References
Credits
Vaibhav Narkhede WPScan