Input validation vulnerability in MZ Mindbody API 2.8.2

The MZ Mindbody API for WordPress is vulnerable to a type of attack called Cross-Site Request Forgery. This vulnerability exists in versions of the API up to and including 2.8.2. It is caused by the lack of or incorrect validation of certain functions, which makes it possible for unauthenticated attackers to edit site content if they can trick an administrator into clicking a link or performing some other action.

Detected in:

MZ Mindbody API fixed vulnerable versions: >= * <= 2.8.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.