Input validation vulnerability in Church Admin 4.0.27

The Church Admin plugin for WordPress has a security issue where it is possible for hackers to access sensitive information from the database. This can happen if the ‘weeks’ value is not properly protected and if the SQL query is not properly prepared. This vulnerability exists in all versions up to 4.0.27 and can only be exploited by authenticated attackers with contributor-level access or higher.

Detected in:

Church Admin fixed vulnerable versions: >= * <= 4.0.27

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.