Dokan
cpe:2.3:a:dokan:dokan:*:*:*:*:wordpress:*:*, +1 more
- <= 4.2.4
A vulnerability allowing authentication bypass has been identified in the Dokan Lite WordPress plugin, affecting versions through 4.2.4. This vulnerability allows malicious actors to exploit authentication mechanisms, potentially gaining unauthorized access or privileges on affected websites.
Exploitation of this vulnerability could lead to unauthorized actions being performed by users with lower privileges, potentially allowing them to gain administrative access to the website.
Users of the Dokan Lite WordPress plugin should update to version 4.2.5 or later. Patchstack users can enable auto-update for vulnerable plugins.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.