Beta

Report

Social Media & Share Icons <= 2.8.6 is vulnerable to Broken Access Control vulnerability

Subscriber
Published
2024-04-25

Multiple plugins and/or themes by Inisev for WordPress are vulnerable to unauthorized access due to a missing capability check on several functions in various versions. This makes it possible for authenticated attackers, with subscriber-level access and above, to perform unauthorized actions.

CVSS

Score:4.3

Severity:Medium

Version: 2.8.6

There is a patch available in v2.8.7 and we strongly recommend you update to this version as soon as possible.