WP Activity Log, 6ff37c2e-e21d-4abc-bafe-8ca6a2c1ed76
- CVE, Research URL
- Home page URL
- Application
- Published on
- -
- Research Description
- WP Activity Log [wp-security-audit-log] < 3.3.1.2 Freemius Library < 2.2.4 - Subscriber+ Arbitrary Option Update The library, used in numerous plugins, does not have proper authorisation when updating blog options, allowing any authenticated users, such as subscriber to update arbitrary options
- Affected versions
-
max 3.3.1.2.
- Status
-
vulnerable