Weak configuration vulnerability in Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC) 2.8.9

The BuddyForms plugin for WordPress has a security issue that could allow unauthorized people to bypass the email verification process. This is due to an activation code that is not randomized enough. This vulnerability exists in all versions up to 2.8.9 of the plugin.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.