Lucene search

K
patchstackNguyen Anh Tien (Patchstack Alliance)PATCHSTACK:98F540E6A8243F14FDE53F42C9F13C2B
HistoryNov 07, 2022 - 12:00 a.m.

WordPress LoginPress plugin <= 1.6.2 - Broken Access Control vulnerability

2022-11-0700:00:00
Nguyen Anh Tien (Patchstack Alliance)
patchstack.com
12
wordpress
loginpress
plugin
broken access control
vulnerability
unauthorized changes
nguyen anh tien
patchstack alliance
update

EPSS

0.001

Percentile

31.3%

Broken Access Control vulnerability leading to unauth. changing of Opt-In or Opt-Out tracking settings discovered by Nguyen Anh Tien (Patchstack Alliance) in the WordPress LoginPress plugin (versions <= 1.6.2).

Solution

           Update the WordPress LoginPress plugin to the latest available version (at least 1.6.3).

EPSS

0.001

Percentile

31.3%

Related for PATCHSTACK:98F540E6A8243F14FDE53F42C9F13C2B