Toast Plugins Animator Missing Authorization Vulnerability Allowing Unauthenticated Access Control Changes
Vulnerability
A missing authorization vulnerability has been identified in the Toast Plugins Animator WordPress plugin, affecting versions through 3.0.10. This vulnerability allows unauthenticated users to exploit improperly configured access control settings, potentially leading to unauthorized changes in plugin settings.
Impact
Exploitation of this vulnerability could result in unauthorized changes to plugin settings, allowing an attacker to manipulate the behavior of the Animator plugin without proper authorization.
Remediation
Users of the Toast Plugins Animator WordPress plugin should update to version 3.0.11 or later to address this vulnerability. Patchstack users can enable auto-update for vulnerable plugins.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
