Access violation vulnerability in BadgeOS 3.7.1.6

and viewing their earned badges. BadgeOS is a plugin for WordPress websites. It is vulnerable to data being accessed without permission in versions up to 3.7.1.6. This means that people who have a subscriber-level account or higher can view other users’ earned badges and other information without authorization. It is important to update to the latest version of BadgeOS to protect against this vulnerability.

Detected in:

BadgeOS open vulnerable versions: >= * <= 3.7.1.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.