andy_moyle Church Admin
cpe:2.3:a:church_admin_project:church_admin:*:*:*:*:wordpress:*:*
- <= 5.0.9
A missing authorization vulnerability has been identified in the WordPress Church Admin plugin, affecting versions through 5.0.9. This vulnerability allows unauthorized users to access sensitive information that is typically restricted, potentially leading to the exploitation of other weaknesses within the system.
Exploitation of this vulnerability could result in unauthorized access to sensitive data, which could be used to exploit additional vulnerabilities within the application or system.
Users of the WordPress Church Admin plugin should update to version 5.0.10 or later to address this vulnerability. Patchstack users can enable auto-update for vulnerable plugins.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.