Access violation vulnerability in Email Notifications for Updates 1.1.6

A plugin called Email Notifications for Updates in WordPress has a security issue that can allow unauthorized changes to be made to the data. This can lead to someone gaining higher privileges on the site without permission. The issue is due to a missing security check in the plugin’s function, and it affects all versions up to 1.1.6. Attackers who have at least Subscriber-level access can take advantage of this vulnerability to change important settings on the site and even gain administrative access.

Detected in:

Email Notifications for Updates fixed vulnerable versions: >= * <= 1.1.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.