Cross-Site Request Forgery (CSRF) vulnerability leading to backup download discovered by 0xB9 in WordPress Database Backups plugin (versions <= 184.108.40.206).
2021-03-18 - we were unable to find a patched version of this plugin. WordPress.org plugin repository notice: "This plugin has been closed as of February 10, 2021 and is not available for download. This closure is temporary, pending a full review."
Found a vulnerability that puts your sites at risk?