Access violation vulnerability in Cryptocurrency Widgets – Price Ticker & Coins List 2.6.8

The Cryptocurrency Widgets – Price Ticker & Coins List plugin for WordPress has a security issue that allows unauthorized access. This happens because the ccpw_post_type() function in versions up to 2.6.8 does not properly check for permissions. This means that people who are logged in and have author or higher level access can do things they are not supposed to do.

Detected in:

Cryptocurrency Widgets – Price Ticker & Coins List fixed vulnerable versions: >= * <= 2.6.8

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.