Input validation vulnerability in Contact Form & SMTP Plugin for WordPress by PirateForms 2.6.0

The Contact Form & SMTP Plugin for WordPress by PirateForms is not secure in versions up to 2.6.0. This is because the plugin lets users do something without checking if it is safe first. This can let people who are not logged in to the website use any shortcodes they want.

Detected in:

Contact Form & SMTP Plugin for WordPress by PirateForms fixed vulnerable versions: >= * <= 2.6.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.