Input validation vulnerability in WP All Import Pro 4.9.7

The WP All Import Pro plugin for WordPress has a security flaw that allows hackers to inject malicious code into websites. This can happen if the plugin is used to import files with untrusted data. The vulnerability affects all versions of the plugin up to 4.9.7. Hackers with high-level access can take advantage of this vulnerability to delete files, access sensitive information, or run code on the website. It is important for users to update to the latest version of the plugin to protect their website.

Detected in:

Import any XML or CSV File to WordPress PRO fixed vulnerable versions: >= * <= 4.9.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.