Access violation vulnerability in User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin 3.1.5

The User Registration – Custom Registration Form, Login Form, and User Profile WordPress Plugin is a tool for WordPress users. It has a security vulnerability that could result in data being lost without permission. This is because the profile_pic_remove function does not have a check to make sure only authorized users can delete media files. This means that someone who is not logged in or does not have permission could potentially delete any media file.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.