Access violation vulnerability in SoundCloud Is Gold 2.5.1

The Soundcloud Is Gold plugin for WordPress is vulnerable to changes made without permission. In versions up to, and including, 2.5.1, the soundcloud_is_gold_add_user() function, which is called via an AJAX action, does not have the necessary security checks in place. This means that people who have at least a subscriber-level of access can add additional Soundcloud usernames without permission.

Detected in:

SoundCloud Is Gold open vulnerable versions: >= * <= 2.5.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.