Description
WordPress Plugin Easy Digital Downloads-Simple eCommerce for Selling Digital Files is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions. WordPress Plugin Easy Digital Downloads-Simple eCommerce for Selling Digital Files version 2.9.16 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.9.17 or latest
References
Related Vulnerabilities
Plone CMS Improper Input Validation Vulnerability (CVE-2013-4197)
Apache Tomcat Uncontrolled Resource Consumption Vulnerability (CVE-2019-0199)
WordPress Plugin Buddypress Xprofile Custom Fields Type Arbitrary File Deletion (2.6.3)
Liferay Portal Improper Certificate Validation Vulnerability (CVE-2022-42131)