Access violation vulnerability in Image Optimizer, Resizer and CDN – Sirv 7.2.7

The Sirv plugin for WordPress, which helps optimize, resize, and use a CDN for images, is at risk of being changed by unauthorized users. This is because the plugin does not have proper checks in place to make sure the person making changes has the right permissions. As a result, someone with at least Subscriber-level access could potentially switch the connected Sirv account to one that they control.

Detected in:

Image Optimizer, Resizer and CDN – Sirv fixed vulnerable versions: >= * <= 7.2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.