Authentication vulnerability in MStore API 4.10.7

The MStore API plugin for WordPress is a software that has a security flaw. Unauthorized people can gain access to user accounts and be granted more privileges than they should have if they know the user’s email address. Even though we alerted the developers of this issue 30 days ago, they have not released a patch yet – but continue to release updates.

Detected in:

MStore API fixed vulnerable versions: >= * <= 4.10.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.