Access violation vulnerability in WP Crowdfunding 2.1.4

The WP Crowdfunding plugin for WordPress is vulnerable to attackers who can reset the settings without permission. This means that someone with at least a “subscriber” level of access can reset the plugin settings in versions up to and including 2.1.4. This can be done without authorization.

Detected in:

WP Crowdfunding open vulnerable versions: >= * <= 2.1.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.