Title: 3 security issues
Last modified: July 29, 2026

---

# 3 security issues

 *  [patzz](https://wordpress.org/support/users/patzz72/)
 * (@patzz72)
 * [1 week, 3 days ago](https://wordpress.org/support/topic/3-security-issues/)
 * Hi,
 * My security warning noticed me about 3 security issues with the plugin:
   [https://patchstack.com/database/wordpress/plugin/complianz-gdpr/vulnerability/wordpress-complianz-plugin-7-5-0-sensitive-data-exposure-vulnerability](https://patchstack.com/database/wordpress/plugin/complianz-gdpr/vulnerability/wordpress-complianz-plugin-7-5-0-sensitive-data-exposure-vulnerability)
 * [https://patchstack.com/database/wordpress/plugin/complianz-gdpr/vulnerability/wordpress-complianz-plugin-7-5-0-php-object-injection-vulnerability](https://patchstack.com/database/wordpress/plugin/complianz-gdpr/vulnerability/wordpress-complianz-plugin-7-5-0-php-object-injection-vulnerability)
 * [https://patchstack.com/database/wordpress/plugin/complianz-gdpr/vulnerability/wordpress-complianz-plugin-7-5-0-server-side-request-forgery-ssrf-vulnerability](https://patchstack.com/database/wordpress/plugin/complianz-gdpr/vulnerability/wordpress-complianz-plugin-7-5-0-server-side-request-forgery-ssrf-vulnerability)
 * Any time window on fixing these?
 * Kind regards!

Viewing 5 replies - 1 through 5 (of 5 total)

 *  Thread Starter [patzz](https://wordpress.org/support/users/patzz72/)
 * (@patzz72)
 * [1 week, 1 day ago](https://wordpress.org/support/topic/3-security-issues/#post-18975692)
 * That is weird, yesterday there where 4-5 other users who reported the problems(
   see the 8 participants in the discussion on the right), but all of their posts
   disappeared.
 *  Plugin Author [Aert](https://wordpress.org/support/users/aahulsebos/)
 * (@aahulsebos)
 * [1 week, 1 day ago](https://wordpress.org/support/topic/3-security-issues/#post-18975786)
 * [@patzz72](https://wordpress.org/support/users/patzz72/) I don’t know why posts
   are deleted.
   Update regarding the security warning; we’re now checking how to
   resolve – impact is considered low by Patchstack on all. #2 needs admin permission
   level; to do something less impactful than what you could do with administrator
   access.#1 – If you’re using a Gutenberg block or Shortcode for a custom consent
   area in a post; and you have the post password protected, it’s possible to check
   the post_content in this custom consent area by guessing the post_id on a REST
   endpoint…and this custom consent area could have ‘sensitive data’ – which the
   author added in a consent area, apparently. The #3 is still being investigated,
   because it’s unclear how Complianz is involved. But it’s an edge case with high
   permissions.We will update when we’re done; and resolve through Patchstack.
 *  Thread Starter [patzz](https://wordpress.org/support/users/patzz72/)
 * (@patzz72)
 * [1 week, 1 day ago](https://wordpress.org/support/topic/3-security-issues/#post-18975813)
 * Great, good to hear!
 *  [Ron](https://wordpress.org/support/users/donniepeters/)
 * (@donniepeters)
 * [6 days, 5 hours ago](https://wordpress.org/support/topic/3-security-issues/#post-18978616)
 * [@aahulsebos](https://wordpress.org/support/users/aahulsebos/)
 * I am also getting the Wordfence warning on **numerous websites** I manage….
   [https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/complianz-gdpr/complianz-gdprccpa-cookie-consent-751-authenticated-administrator-php-object-injection](https://www.wordfence.com/threat-intel/vulnerabilities/wordpress-plugins/complianz-gdpr/complianz-gdprccpa-cookie-consent-751-authenticated-administrator-php-object-injection)
 *  Moderator [Support Moderator](https://wordpress.org/support/users/moderator/)
 * (@moderator)
 * [6 days, 5 hours ago](https://wordpress.org/support/topic/3-security-issues/#post-18978655)
 * There’s no need for anyone to continue to add on to this topic. All non-OP replies
   have been removed other than the developers. The topic is now closed.

Viewing 5 replies - 1 through 5 (of 5 total)

The topic ‘3 security issues’ is closed to new replies.

 * ![](https://ps.w.org/complianz-gdpr/assets/icon-256x256.png?rev=2881064)
 * [Complianz - GDPR/CCPA Cookie Consent](https://wordpress.org/plugins/complianz-gdpr/)
 * [Frequently Asked Questions](https://wordpress.org/plugins/complianz-gdpr/#faq)
 * [Support Threads](https://wordpress.org/support/plugin/complianz-gdpr/)
 * [Active Topics](https://wordpress.org/support/plugin/complianz-gdpr/active/)
 * [Unresolved Topics](https://wordpress.org/support/plugin/complianz-gdpr/unresolved/)
 * [Reviews](https://wordpress.org/support/plugin/complianz-gdpr/reviews/)

## Tags

 * [security issue](https://wordpress.org/support/topic-tag/security-issue/)

 * 11 replies
 * 5 participants
 * Last reply from: [Support Moderator](https://wordpress.org/support/users/moderator/)
 * Last activity: [6 days, 5 hours ago](https://wordpress.org/support/topic/3-security-issues/#post-18978655)
 * Status: not resolved