Access violation vulnerability in Co-Authors, Multiple Authors and Guest Authors in an Author Box with PublishPress Authors 4.7.1

The Author Box feature of the PublishPress Authors plugin for WordPress has a security vulnerability that could allow hackers to gain access to user accounts. This vulnerability affects all versions of the plugin up to 4.7.1. Hackers with Author-level access or higher can exploit this vulnerability by changing the email address of any user, including administrators. This could then be used to reset the user’s account password and gain unauthorized access.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.