#VU18792 Improper access control in WPGraphQL - CVE-2019-9879
Published: June 13, 2019 / Updated: June 18, 2019
WPGraphQL
WPGraphQL
Description
The vulnerability allows a remote attacker to compromise the website.
The vulnerability exists due to the software allows to assign a newly created user administrative privileges during account registration. A remote attacker can create an administrative account and gain complete access to the website.