Access violation vulnerability in UpdraftPlus WordPress Backup Plugin 1.23.2

The UpdraftPlus plugin for WordPress has a security issue that could allow people with access to the website to do more than they are supposed to. It affects versions 1.22.14 to 1.23.2 of the free version and 2.22.14 to 2.23.2 of the premium version. This is called privilege escalation and it allows people with at least subscriber-level permissions to change the plugin’s settings in a way that could allow them to perform administrator-level actions.

Detected in:

UpdraftPlus WordPress Backup Plugin fixed vulnerable versions: >= 1.22.14 <= 1.23.2
UpdraftPlus: WP Backup & Migration Plugin fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.