Description
In Limesurvey before 3.17.14, admin users can mark other users' notifications as read.
Remediation
References
Related Vulnerabilities
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-8994)
Sqlite Improper Input Validation Vulnerability (CVE-2016-6153)
WordPress Plugin Duplicator-WordPress Migration Cross-Site Scripting (0.4.4)
WordPress Plugin YITH Color and Label Variations for WooCommerce Security Bypass (1.8.11)