Access violation vulnerability in SupportCandy – Helpdesk & Customer Support Ticket System 3.3.0

The SupportCandy plugin for WordPress, which helps with customer support tickets, has a security vulnerability that allows unauthorized access to attachments. This means that someone who is not supposed to have access to the support tickets could potentially download attachments. This can happen if an admin allows guest tickets.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.