Description
The Hide Dashboard Notifications plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'warning_notices_settings' function in all versions up to, and including, 1.3. This makes it possible for authenticated attackers, with contributor access and above, to modify the plugin's settings.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17673 | The Hide Dashboard Notifications plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'warning_notices_settings' function in all versions up to, and including, 1.3. This makes it possible for authenticated attackers, with contributor access and above, to modify the plugin's settings. |
References
History
No history.
Status: PUBLISHED
Assigner: Wordfence
Published:
Updated: 2026-04-08T17:25:48.491Z
Reserved: 2024-02-27T20:10:04.446Z
Link: CVE-2024-1955
Updated: 2024-08-01T18:56:22.585Z
Status : Modified
Published: 2024-06-21T02:15:10.327
Modified: 2026-04-08T19:20:55.703
Link: CVE-2024-1955
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD