WPtouch

This information is sourced from wpvulnerabilities.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Vulnerabilities

  • Input validation vulnerability in WPtouch 3.4.2

    Fixed

    The WordPress plugin WPtouch is vulnerable to malicious file uploads for versions up to 3.4.2. This vulnerability is caused by the function 'admin_initialize()' being called with the 'admin_init' hoo...

    Read More
  • Input validation vulnerability in WPtouch 1.9.20

    Fixed

    The WPtouch plugin versions 1.9.19.4 and 1.9.20 for WordPress have a security vulnerability that allows people to inject malicious code such as web scripts or HTML into a website. This vulnerability i...

    Read More
  • Input validation vulnerability in WPtouch 1.9.30

    Fixed

    The WPtouch plugin for WordPress is vulnerable to an attack called an Open Redirect. This means that if someone uses a specific type of URL with the WPtouch plugin, it could cause them to be redirect...

    Read More
  • Input validation vulnerability in WPtouch 4.3.44

    Fixed

    The WPtouch plugin for WordPress has a security issue in versions up to and including 4.3.44. People with administrator-level permissions or higher can upload any type of file to the affected website'...

    Read More
  • Input validation vulnerability in WPtouch 3.7

    Fixed

    The WPTouch plugin for WordPress is vulnerable to a security flaw in versions before 3.7. This vulnerability allows malicious actors to take advantage of a trusted website to redirect unsuspecting vi...

    Read More
  • Input validation vulnerability in WPtouch 1.9.8.1

    Fixed

    Read More
  • Input validation vulnerability in WPtouch 4.3.42

    Fixed

    The WPtouch plugin for WordPress has a security vulnerability that allows unauthenticated attackers to inject malicious web scripts into pages if users can be tricked into performing an action, such ...

    Read More
  • Output validation vulnerability in WPtouch 4.3.44

    Fixed

    The WPtouch plugin for WordPress is not secure in versions up to 4.3.44. It can be exploited by attackers with administrator-level access

    Read More
  • Input validation vulnerability in WPtouch 3.7.6

    Fixed

    The WPtouch plugin for WordPress is vulnerable to a type of cyber-attack called Cross-Site Scripting in versions up to, and including, 3.7.5.3. This happens because the plugin does not properly check...

    Read More