First published: Fri Mar 17 2017(Updated: )
An issue was discovered in `includes/component.php` in the BuddyPress Docs plugin before 1.9.3 for WordPress. It is possible for authenticated users to edit documents of other users without proper permissions.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Buddypress Buddypress | <=1.9.2 | |
composer/buddypress/buddypress | <1.9.3 | 1.9.3 |
<=1.9.2 |
https://github.com/boonebgorges/buddypress-docs/commit/75293ed4e5f31f04e54689bfe2c647e3e3f5e1a9
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.