WordPress Webinar Plugin WebinarPress Missing Capability Check Vulnerability

Vulnerability

A vulnerability exists in the WordPress Webinar Plugin - WebinarPress, in all versions through 1.33.24. The issue arises from several functions lacking proper capability checks, allowing authenticated users with subscriber-level access and above to modify webinar data.

Impact

Exploitation of this vulnerability allows for unauthorized data modification, specifically enabling users to alter webinar details without proper permissions.

Remediation

Users can update to version 1.33.25 or a newer patched version to address this vulnerability.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.2
impact
0.6
exploitability
6.1
remediation
7.7
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.