Access violation vulnerability in AutomatorWP – Automator plugin for no-code automations, webhooks & custom integrations in WordPress 5.3.7

The AutomatorWP plugin for WordPress allows users to create automations and integrate different tools without needing to know how to code. However, it has a security flaw that allows unauthorized users to access and change data without permission. This affects all versions of the plugin up to 5.3.7. It means that attackers who are logged in with a Subscriber-level account or higher can make changes to the integration settings or see existing automations without permission.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.