Input validation vulnerability in MailerLite – WooCommerce integration 2.0.8

The plugin that connects MailerLite and WooCommerce on WordPress has a security issue. This problem, called Cross-Site Request Forgery, affects versions 2.0.8 and below. The plugin does not properly check for a security code, making it possible for someone who is not logged in to the site to perform actions without permission. This can happen if they trick the site’s administrator into clicking on a link.

Detected in:

MailerLite – WooCommerce integration fixed vulnerable versions: >= * <= 2.0.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.