Access violation vulnerability in TK Google Fonts GDPR Compliant 2.2.7

The TK Google Fonts GDPR Compliant plugin for WordPress had an issue in versions up to and including 2.2.7 that allowed anyone to make changes to the plugin’s settings without needing any special permission. This was due to the lack of checks that the plugin had in place to verify if a user had the right to make changes, as well as the lack of a verification system that would check if someone was authorized to make changes.

Detected in:

TK Google Fonts GDPR Compliant fixed vulnerable versions: >= * <= 2.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.