Access violation vulnerability in 17 plugins by CatchThemes

The CatchThemes vendor has multiple plugins that do not check for capability or security. This means that anyone who is logged in to a WordPress website

Detected in:

Catch Breadcrumb fixed vulnerable versions: >= * < 1.7
Catch Gallery fixed vulnerable versions: >= * < 1.7
Catch IDs fixed vulnerable versions: >= * < 2.4
Catch Import Export fixed vulnerable versions: >= * < 1.9
Catch Infinite Scroll fixed vulnerable versions: >= * < 1.9
Catch Scroll Progress Bar fixed vulnerable versions: >= * < 1.6
Catch Sticky Menu fixed vulnerable versions: >= * < 1.7
Catch Themes Demo Import fixed vulnerable versions: >= * < 1.6
Catch Under Construction fixed vulnerable versions: >= * < 1.4
Catch Web Tools fixed vulnerable versions: >= * < 2.7
Essential Content Types fixed vulnerable versions: >= * < 1.9
Essential Widgets fixed vulnerable versions: >= * < 1.9
Generate Child Theme fixed vulnerable versions: >= * < 1.6
Header Enhancement fixed vulnerable versions: >= * < 1.5
To Top fixed vulnerable versions: >= * < 2.3
Catch Duplicate Switcher open vulnerable versions: >= * < 1.6
Social Gallery and Widget open vulnerable versions: >= * < 2.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.