The WP Mail Logging plugin for WordPress has an issue in versions up to, and including, 1.11.2 which can allow attackers with subscriber-level access or higher to dismiss important notices from the plugin. This is possible because the plugin doesn’t have a capability check on the feedback_notice_dismiss() function.