Access violation vulnerability in ClickCease Click Fraud Protection 3.2.4

The ClickCease Click Fraud Protection plugin for WordPress has a security issue that can allow unauthorized people to access data without permission. This happens because of a mistake in how the plugin checks for user permissions. This vulnerability exists in all versions up to and including 3.2.4, and it means that attackers who are logged in and have author or higher access can get the API keys that are used to configure the plugin.

Detected in:

ClickCease Click Fraud Protection fixed vulnerable versions: >= * <= 3.2.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.