First published: Mon Aug 01 2022(Updated: )
The YaySMTP WordPress plugin before 2.2.1 does not have capability check in an AJAX action, allowing any logged in users, such as subscriber to view the Logs of the plugin
Credit: contact@wpscan.com
Affected Software | Affected Version | How to fix |
---|---|---|
Yaycommerce Yaysmtp | <2.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.