Input validation vulnerability in Simple Author Box 2.50

The Simple Author Box plugin for WordPress is not secure in versions up to 2.50. This means that unauthenticated attackers can use forged requests to trick a site administrator into performing an action such as clicking on a link, and then edit user profile settings of other users. To fix this issue, the nonce validation on the save_user_profile function must be updated.

Detected in:

Simple Author Box fixed vulnerable versions: >= * <= 2.50

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.