Access violation vulnerability in Just Custom Fields 3.3.2

The Just Custom Fields plugin for WordPress is vulnerable to unauthorized changes on its data. This means that people who are already logged in and have at least a subscriber-level access can create, change, and delete custom fields without permission. The vulnerability affects all versions of the plugin up to 3.3.2.

Detected in:

Just Custom Fields open vulnerable versions: >= * <= 3.3.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.