Access violation vulnerability in Woffice Core 5.4.26

A plugin called Woffice Core for WordPress has a security issue where anyone with Contributor-level access or higher can delete any file on the server without proper validation. This can be very dangerous as it could lead to hackers being able to run their own code on the website.

Detected in:

Woffice Core fixed vulnerable versions: >= * <= 5.4.26

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.