Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-10034— WP DSGVO Tools (GDPR) <= 3.1.39 - Missing Authorization to Unauthenticated Sensitive Personal Data Disclosure via subject-access-request AJAX Endpoint (process_now/is_ajax Parameters)

Quick assessment

Affected
legalweb WP DSGVO Tools (GDPR)
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

legalweb.io WP DSGVO Tools (GDPR)是legalweb.io个人开发者的一款用于GDPR合规的工具。 legalweb.io WP DSGVO Tools (GDPR) 3.1.39及之前版本存在授权问题漏洞,该漏洞源于授权绕过问题,可能导致未经身份验证的攻击者通过process_now和is_ajax参数触发SAR处理,获取包含受害者个人数据的tokenized下载链接。

CVSS 5.3 · Medium EPSS 0.58% · P46

Affected Version Matrix 1

VendorProduct Version RangeStatus
legalweb WP DSGVO Tools (GDPR) ≤ 3.1.39 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-10034

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
WP DSGVO Tools (GDPR) <= 3.1.39 - Missing Authorization to Unauthenticated Sensitive Personal Data Disclosure via subject-access-request AJAX Endpoint (process_now/is_ajax Parameters)
Source: CVE Program / CVE List V5
Vulnerability Description
The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.1.39. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for unauthenticated attackers to supply an arbitrary victim email address and trigger immediate SAR processing via the process_now and is_ajax parameters, receiving tokenized download links (zip_link, pdf_link) in the HTTP response that expose the victim's personal data — including WordPress account details, comment author names, email addresses, IP addresses, and comment content — without any proof of ownership. The nonce used for the CSRF check is publicly rendered by the SAR shortcode form and is shared across all anonymous visitors, meaning any unauthenticated attacker can trivially obtain a valid nonce and bypass this gate entirely.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Source: CVE Program / CVE List V5
Vulnerability Type
授权机制缺失
Source: CVE Program / CVE List V5
Vulnerability Title
legalweb.io WP DSGVO Tools (GDPR) 授权问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
legalweb.io WP DSGVO Tools (GDPR)是legalweb.io个人开发者的一款用于GDPR合规的工具。 legalweb.io WP DSGVO Tools (GDPR) 3.1.39及之前版本存在授权问题漏洞,该漏洞源于授权绕过问题,可能导致未经身份验证的攻击者通过process_now和is_ajax参数触发SAR处理,获取包含受害者个人数据的tokenized下载链接。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
legalweb WP DSGVO Tools (GDPR) 0 ~ 3.1.39 -

II. Public POCs for CVE-2026-10034

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-10034

请登录查看更多情报信息。

Patches & Fixes for CVE-2026-10034 (8)

Vendor Advisories for CVE-2026-10034 (1)

Vendor Pages for CVE-2026-10034 (1)

Other References for CVE-2026-10034 (2)

IV. Related Vulnerabilities

V. Comments for CVE-2026-10034

No comments yet


Leave a comment