The Service Finder Bookings plugin for WordPress, used by the Service Finder - Directory and Job Board WordPress Theme, is vulnerable to privilege escalation in all versions up to, and including, 5.1. This is due to a lack of restriction on user role in the 'nsl_registration_store_extra_input' function. This makes it possible for unauthenticated attackers to register an account on the site with an arbitrary role, including Administrator, when registering via a social login. The Nextend Social Login plugin must be installed and configured to exploit the vulnerability.
#VPN
NEW

The best VPN service advice from VPNpro experts. Unbiased VPN reviews, speed tests, comparisons and researches. We care about your online privacy!

Explore the Mysterium VPN Blog for tech insights, privacy tips, and the latest news in VPN technology. Stay informed and secure in the digital world!

The Latest on VPNs, Privacy, Censorship. See what's happening now in the world of cybersecurity and online privacy. Get your news from a reliable, trustworthy group of cybersecurity experts.

All the latest privacy news and features from the Proton VPN team. Learn how we protect online privacy, security, and freedom through technology.

VPN Unlimited is one of the best virtual private network services to protect all data you receive or send over the internet, to surf the web anonymously and to bypass restrictions. Get 7-day free trial of our online VPN service and try for yourself.

NEW

Connect to 6000+ active VPN servers with L2TP/IPsec, OpenVPN, MS-SSTP or SSL-VPN protocol. Academic project by University of Tsukuba, free of charge.

What’s the deal with Virtual Private Networks? Discover how they work, why they’re important and what using a VPN can do for you.

The best internet privacy and online security blog. Regular news, opinion, and product updates from the world’s leading ultra-fast VPN service.