CVE-2017-5487 | WordPress 4.7.0 REST API class-wp-rest-users-controller.php information disclosure (EDB-41497 / Nessus ID 96606)
A vulnerability was found in WordPress 4.7.0. It has been declared as problematic. This impacts an unknown function of the file wp-includes/rest-api/endpoints/class-wp-rest-users-controller.php of the component REST API. The manipulation results in information disclosure.
This vulnerability is identified as CVE-2017-5487. The attack can be executed remotely. Additionally, an exploit exists.
It is recommended to upgrade the affected component.