Input validation vulnerability in User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor 3.10.3

The User Profile Builder plugin for WordPress is vulnerable to a security issue known as Cross-Site Request Forgery in all versions up to, and including, 3.10.3. This means that if someone could trick a site admin into clicking on a link, they might be able to activate or deactivate certain plugins without the admin’s permission. This is because the plugin does not have the right security measures in place to protect against this kind of attack.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.