Input validation vulnerability in Multi Step Form 1.7.11

The Multi Step Form plugin for WordPress has a security vulnerability in all versions up to version 1.7.11. This vulnerability makes it possible for unauthenticated attackers to perform malicious actions such as duplicating, editing, and deleting forms. This is possible if the attackers can convince a site administrator to click on a malicious link. To fix this issue, the plugin developers need to add nonce validation to the menu() function.

Detected in:

Multi Step Form fixed vulnerable versions: >= * <= 1.7.12

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.