Description
WordPress Plugin Easy Digital Downloads-Simple eCommerce for Selling Digital Files is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to bypass the expected capabilities check and perform otherwise restricted actions. WordPress Plugin Easy Digital Downloads-Simple eCommerce for Selling Digital Files version 2.9.16 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.9.17 or latest
References
Related Vulnerabilities
WordPress Plugin GD bbPress Tools Cross-Site Scripting (1.7)
WordPress Plugin Premmerce Product Filter for WooCommerce Security Bypass (3.1.2)
WordPress Plugin Blog Designer Cross-Site Scripting (1.8.11)
WordPress Plugin Photo Gallery by 10Web-Mobile-Friendly Image Gallery Cross-Site Scripting (1.5.68)
WordPress Plugin PowerPack Lite for Beaver Builder Cross-Site Scripting (1.3.0)