Access violation vulnerability in XStore 9.5.4

The XStore theme for WordPress has a security vulnerability that affects all versions up to 9.5.4. Attackers with at least Subscriber-level access can exploit this vulnerability to include and run .php files on the server, which can result in unauthorized access, theft of sensitive information, or the execution of harmful code.

Detected in:

XStore open vulnerable versions: >= * <= 9.5.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.