Access Control Vulnerability in Newspaper Theme for WordPress
CVE-2016-10972
9.8CRITICAL
What is CVE-2016-10972?
The Newspaper theme for WordPress, prior to version 6.7.2, is impacted by an access control issue related to the td_ajax_update_panel function. This vulnerability allows unauthorized users to access sensitive options and make changes without proper authentication, potentially compromising the security of affected websites. It is crucial for users of this theme to upgrade to the latest version to mitigate this risk.