Input validation vulnerability in LatePoint Plugin 5.0.11

The LatePoint plugin for WordPress has a security vulnerability that allows attackers to change user passwords without proper authorization. This can potentially lead to them taking over administrator accounts. It is important to note that this vulnerability only affects users who have enabled the “Use WordPress users as customers” setting, which is not enabled by default.

Detected in:

LatePoint Plugin fixed vulnerable versions: >= * <= 5.0.11

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.