Input validation vulnerability in Waitlist Woocommerce ( Back in stock notifier ) 2.5.2

The Waitlist Woocommerce (Back in stock notifier) plugin for WordPress is not secure in versions up to and including 2.5.3. An unauthenticated attacker can reset the plugin’s settings without needing to sign in. All they need to do is trick a site administrator into clicking a link. This is because the plugin is missing a certain type of validation that prevents unauthorized access.

Detected in:

Waitlist Woocommerce ( Back in stock notifier ) fixed vulnerable versions: >= * <= 2.5.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.