Access violation vulnerability in Biometric Login For WooCommerce 1.0.3

The Biometric Login for WooCommerce plugin for WordPress has an issue that could allow unauthenticated attackers to take control of accounts on websites using this plugin. This issue exists in versions up to, and including, 1.0.3 and is due to missing validation of authentication requests using WebAuthn. It is recommended to update the plugin to the latest version to fix this vulnerability.

Detected in:

Biometric Login For WooCommerce fixed vulnerable versions: >= * <= 1.0.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.