Access violation vulnerability in Streamit 4.0.2

The Streamit theme for WordPress has a security issue that allows unauthorized users to take over someone else’s account. This happens because the plugin does not check a user’s identity before letting them change their email address. This means that attackers can change the email address of any user, even administrators, and use that to reset their password and gain access to their account.

Detected in:

Streamit fixed vulnerable versions: >= * <= 4.0.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.