Access violation vulnerability in affiliate-toolkit – WordPress Affiliate Plugin 3.5.5

The WordPress plugin “Affiliate-toolkit” is at risk for a vulnerability called “Full Path Disclosure”. This is because the display_errors setting is set to true. This could allow attackers to access the full path of the website, which could then be used to carry out other attacks. However, this information alone is not enough to cause harm to a website. Another vulnerability would also need to be present.

Detected in:

affiliate-toolkit fixed vulnerable versions:
affiliate-toolkit – WordPress Affiliate Plugin open vulnerable versions: >= * <= 3.5.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.