Access violation vulnerability in Addon Library 1.3.76

The Addon Library plugin for WordPress has a security issue that can allow people to access data without permission. This is because there is a missing check to make sure the person has the right capabilities. This issue exists in all versions up to 1.3.76. This means that someone who is logged in and has at least subscriber-level access can do things they shouldn’t be able to, like uploading any file they want.

Detected in:

Addon Library open vulnerable versions: >= * <= 1.3.76

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.