Input validation vulnerability in Quick Restaurant Reservations 1.5.4

The Quick Restaurant Reservations plugin for WordPress has a security flaw that can be taken advantage of by unauthenticated attackers. This flaw affects all versions up to and including 1.5.4 and is due to the lack of or incorrect validation of something called a ‘nonce’ on the ‘email_action’ function. This makes it possible for attackers to modify email statuses if they can get a site administrator to take an action

Detected in:

Quick Restaurant Reservations fixed vulnerable versions: >= * <= 1.5.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.