Input validation vulnerability in WHIZZ 1.1

The WHIZZ plugin for WordPress is not secure in versions up to 1.1.1. This means that someone who is not authorized to make changes can delete WordPress users and change the plugin’s settings by sending out a special type of request. It is possible for this to happen if the administrator clicks on a link that has been created by the unauthenticated attacker.

Detected in:

WHIZZ fixed vulnerable versions: >= * <= 1.1

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.