Access violation vulnerability in InstaWP Connect – 1-click WP Staging & Migration (beta) 0.0.9.18

The InstaWP Connect plugin for WordPress has a security vulnerability that allows unauthorized people to access, change, and delete data. This vulnerability affects versions 0.0.9.18 and earlier. It allows attackers to add, modify, and delete posts and taxonomies, install and deactivate plugins, change customizer settings, and add, modify, and delete users, including administrators.

Detected in:

InstaWP Connect – 1-click WP Staging & Migration (beta) fixed vulnerable versions: >= * <= 0.0.9.18

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.