Input validation vulnerability in Kadence WooCommerce Email Designer 1.5.16

The Kadence WooCommerce Email Designer plugin for WordPress has a security flaw that could allow unauthorized changes to be made to data. This could potentially lead to someone gaining more privileges than they should have. This vulnerability affects all versions up to and including 1.5.16. If an attacker has at least Shop Manager-level access to the site, they could change certain settings and gain administrative access. This could be used to make themselves an administrator and allow them to register as a user on the site, giving them even more control.

Detected in:

Kadence WooCommerce Email Designer fixed vulnerable versions: >= * <= 1.5.16

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.