Junglewise Threat Intelligence

CVE-2013-2633: Piwik (now Matomo) Reveals Sensitive Information by Accepting Input from `POST` Requests

CVE-2013-2633 · Severity: medium · CVSS 4 · Published 2022-05-13

Technologies: matomo/matomo (Packagist), piwik/piwik (Packagist). Vendors: Packagist.

Executive brief

Piwik (now Matomo) Reveals Sensitive Information by Accepting Input from `POST` Requests

Affected products

  • Packagist matomo/matomo
  • Packagist piwik/piwik

Related threats