Access violation vulnerability in Backup Scheduler 1.5.13

The Backup Scheduler plugin for WordPress contains a flaw that makes it possible for an unauthorized user to access sensitive information. If you have the Backup Scheduler plugin installed on your WordPress site, and you are using versions 1.5.13 or lower, an authenticated user with subscriber-level permissions or higher can access the plugin’s logs which may contain sensitive information. The user could also delete and modify backups.

Detected in:

Backup Scheduler open vulnerable versions: >= * <= 1.5.13

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.