Access violation vulnerability in Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection 10.24

The Block Bad Bots and Stop Bad Bots Crawlers and Spiders and Anti Spam Protection plugin for WordPress is at risk of being accessed by unauthorized individuals, which could result in the exposure of visitor data. This vulnerability is due to a missing capability check on the stopbadbots_get_ajax_data() function in all versions up to and including 10.24. This means that attackers who have been authenticated with at least subscriber-level access can potentially access and view visitor information.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.