Meta Box – WordPress Custom Fields Framework

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Access violation vulnerability in Meta Box – WordPress Custom Fields Framework 5.9.10

    Fixed

    The Meta Box plugin for WordPress can be accessed without permission, allowing anyone with contributor-level access or higher to view any post.

    Read More
  • Access violation vulnerability in Meta Box – WordPress Custom Fields Framework 5.9.3

    Fixed

    The Meta Box plugin for WordPress is not secure and can potentially expose information. This is because the plugin does not limit which post information can be shown through a specific shortcode. Thi...

    Read More
  • Input validation vulnerability in Meta Box – WordPress Custom Fields Framework 5.9.2

    Fixed

    The Meta Box plugin for WordPress can be attacked by malicious individuals through stored cross-site scripting. This is because the plugin does not properly clean up user input and output, making it...

    Read More
  • Access violation vulnerability in Meta Box – WordPress Custom Fields Framework 4.16.3

    Fixed

    The Meta Box plugin for WordPress versions prior to 4.16.3 allowed users to delete files through a feature called ajax. This feature was accessed through a specific web address

    Read More
  • Access violation vulnerability in Meta Box – WordPress Custom Fields Framework 4.16.1

    Fixed

    The Meta Box plugin

    Read More