Access violation vulnerability in Custom API for WP 4.2.2

The Custom API for WP plugin used in WordPress has a security issue that allows users to increase their access levels beyond what they should have. This vulnerability affects all versions, including the latest one (4.2.2). Attackers who are logged in with at least Subscriber access can exploit this and gain higher privileges.

Detected in:

Custom API for WP fixed vulnerable versions: >= * <= 4.2.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.