What Happened

The Breeze plugin for WordPress is vulnerable to Exposure of Sensitive Information to an Unauthorized Actor due to improper verification of the `wordpress_logged_in_` cookie.

Who Is Affected

All users of the Breeze plugin for WordPress with versions up to, and including, 2.5.2.

Severity & Impact

The severity of this vulnerability is rated as 5.3 (Medium) and could lead to the disclosure of sensitive information such as private posts, the Admin Bar, WordPress nonces, and other data visible only to logged-in administrators or other users.

Mitigation

No specific mitigation steps are provided in the source data.