Authentication vulnerability in ManageWP Worker 4.9.2

The Manage WP Worker plugin for WordPress has a security vulnerability that affects all versions up to 4.9.2. This vulnerability allows attackers to guess a secret key that is shared by all installations of the plugin. With this secret key, attackers can easily bypass authentication on any WordPress site running the plugin. This means that attackers can log in to any site running the plugin without needing any credentials.

Detected in:

ManageWP Worker fixed vulnerable versions: >= * <= 4.9.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.