The Protect WP Admin WordPress plugin before version 4.0 disclosed the URL of the admin panel through the redirection of a crafted URL, bypassing the protection offered.
id: CVE-2023-3139
info:
name: Protect WP Admin < 4.0 - Unauthenticated Protection Bypass
author
...