iThemes Sync

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in iThemes Sync 2.1.14

    Fixed

    The iThemes Sync plugin for WordPress is not secure enough in versions up to, and including, 2.1.13. This means that people who are not logged in can hide admin notices if they can get a site adminis...

    Read More
  • Access violation vulnerability in iThemes Sync 2.0.18

    Fixed

    The iThemes Sync plugin for WordPress is vulnerable to a security issue. In versions up to and including 2.0.17, a missing validation on the secure key can allow unauthenticated attackers to add thei...

    Read More