CyberRota Analysis
AI-GeneratedThe SureCart plugin for WordPress versions prior to 4.7.0 is vulnerable as it allows unauthenticated users to create accounts and gain logged-in sessions without adhering to the site's user registration settings, even when registration is disabled. This can lead to unauthorized access and potential abuse of user privileges. WordPress administrators and site owners using this plugin should prioritize updating to version 4.7.0 or later to mitigate this risk.
Original NVD Description
The SureCart WordPress plugin before 4.7.0 does not consult the site's user registration setting before creating WordPress accounts, allowing unauthenticated users to create an account and receive a logged-in session even when registration is disabled.