weDocs < 2.1.5 – Missing Authorization
Discription

Description The weDocs plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the update_helpfullness REST API endpoint in versions up to, and including, 2.1.4. This makes it possible for unauthenticated attackers to update…Read More

Back to Main

Subscribe for the latest news: