Access violation vulnerability in Wishlist Member 3.25.1

The Wishlist Member plugin for WordPress is at risk of having its data changed by someone who is not authorized. This is because there is a function in all versions up to 3.25.1 that does not check for the proper capabilities. As a result, people who are not logged in can change the plugin’s settings and add harmful scripts.

Detected in:

Wishlist Member open vulnerable versions: >= * <= 3.25.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.