Input validation vulnerability in Hero Mega Menu – Responsive WordPress Menu Plugin 1.16.5

A popular menu plugin for WordPress called Hero Mega Menu has a security issue that could potentially allow hackers to access sensitive information. This is because the plugin does not properly protect against a type of cyber attack called SQL Injection, which can be used to manipulate the database and extract data. This vulnerability affects all versions of the plugin up to 1.16.5, and can be exploited by users with Subscriber-level access or higher.

Detected in:

Hero Mega Menu - Responsive WordPress Menu Plugin open vulnerable versions: >= * <= 1.16.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.