Input validation vulnerability in bbPress Toolkit 1.0.12

The bbPress Toolkit plugin for WordPress is vulnerable to a security flaw called Cross-Site Request Forgery. This means that a malicious person could craft a link or button that would trick a site administrator into performing an action without knowing it. This vulnerability exists in versions up to and including 1.0.12 due to incomplete or incorrect nonce validation on one of its functions.

Detected in:

bbPress Toolkit open vulnerable versions: >= * <= 1.0.12

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.