Medium 6.3
2024-10-16< 1.0.13
Freemius SDK <= 2.4.2 - Missing Authorization Checks
Minimum safe version
1.1.11
Update to 1.1.11 or later to address 7 fixable vulnerabilities
Freemius SDK <= 2.4.2 - Missing Authorization Checks
WordPress All in One Invite Codes Plugin < 1.1.11 is vulnerable to Cross Site Scripting (XSS)
Freemius SDK <= 2.4.2 - Missing Authorization Checks
All in One Invite Codes <= 1.0.14 - Cross-Site Scripting
All in One Invite Codes <= 1.0.15 - Authenticated (Admin+) Stored Cross-Site Scripting
WordPress All in One Invite Codes plugin <= 1.0.12 - Sensitive Information Disclosure vulnerability
WordPress All in One Invite Codes plugin <= 1.0.12 - Toggle The Debug Mode via Cross-Site Request Forgery (CSRF) vulnerability