Authentication vulnerability in Themes Coder – Create Android & iOS Apps For Your Woocommerce Site 1.3.4

A popular plugin for WordPress, called “The Themes Coder”, has a security issue that allows hackers to take over user accounts. This can happen because the plugin doesn’t check to make sure the user is who they say they are before changing their password. This means that anyone, even without an account, can change the password of any user, including administrators, and use that to get into their account.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.