Input validation vulnerability in Call Now Button – The #1 Click to Call Button for WordPress 1.4.13

The Call Now Button is a popular plugin for WordPress that allows users to easily make phone calls. However, it has a security vulnerability that makes it susceptible to Cross-Site Request Forgery. Essentially, this means that attackers who are not authorized to access the website can trick the site administrator into taking an unknown action, such as clicking on a link. This can be done in all versions up to 1.4.13 of the plugin. Please be aware of this issue and update your plugin to the latest version to ensure your website’s security.

Detected in:

Call Now Button – The #1 Click to Call Button for WordPress fixed vulnerable versions: >= * <= 1.4.13

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.