plugin

Yith Easy Login Register Popup For Woocommerce Vulnerabilities

1 known security issue reported for the Yith Easy Login Register Popup For Woocommerce WordPress plugin. Most recent disclosed Sep 20, 2021.

1 critical

Running Yith Easy Login Register Popup For Woocommerce on your site? Check whether your installed version is affected.

Scan your site free

YITH Easy Login & Register Popup for WooCommerce <= 1.8.0 - Authentication Bypass via Password Reset

critical

The YITH Easy Login & Register Popup for WooCommerce plugin for WordPress is vulnerable to authorization bypass via password reset in versions up to, and including, 1.8.0. This is due to the plugin failing to properly validate if a user is authorized to perform a password reset for the supplied user_login via the yith_...

CVSS:
9.8
Affected:
up to 1.8.0
Fixed in:
1.8.1
Disclosed:
Sep 20, 2021

CVE-2021-39331 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database