CVE-2023-30869: WordPress Easy Digital Downloads Plugin 3.1-3.1.1.4.1 is vulnerable to Privilege Escalation
Improper Authentication vulnerability in Easy Digital Downloads plugin allows unauth. Privilege Escalation. This issue affects Easy Digital Downloads: from 3.1 through 3.1.1.4.1.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-30869?
The severity of CVE-2023-30869 is critical with a score of 9.8.
What is affected by CVE-2023-30869?
Easy Digital Downloads plugin versions 3.1 through 3.1.1.4.1 are affected by CVE-2023-30869.
What is the vulnerability in CVE-2023-30869?
CVE-2023-30869 is an Improper Authentication vulnerability in the Easy Digital Downloads plugin which allows unauthorized privilege escalation.
How can I fix CVE-2023-30869?
To fix CVE-2023-30869, update Easy Digital Downloads plugin to version 3.1.1.4.2 or higher.
Where can I find more information about CVE-2023-30869?
You can find more information about CVE-2023-30869 at the following references: [1](https://patchstack.com/articles/critical-easy-digital-downloads-vulnerability?_s_id=cve) and [2](https://patchstack.com/database/vulnerability/easy-digital-downloads/wordpress-easy-digital-downloads-plugin-3-1-1-4-1-unauthenticated-privilege-escalation-vulnerability?_s_id=cve).