Input validation vulnerability in WordPress File Upload 3.9.0

The WordPress File Upload plugin contains a vulnerability that allows people without permission to upload any type of file to a website using the plugin. This vulnerability exists in versions of the plugin up to and including version 3.8.5. If exploited, this vulnerability could allow an attacker to upload malicious files to the affected website, which could enable them to gain control of the website and execute code remotely.

Detected in:

WordPress File Upload open vulnerable versions: >= * < 3.9.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.