Input validation vulnerability in Taxonomy filter 2.2.9

The Taxonomy filter plugin for WordPress is vulnerable to a security issue called Cross-Site Request Forgery (CSRF). This security issue affects versions of the plugin up to and including version 2.2.9. This issue occurs because the plugin does not properly check for valid data in a certain function. This opens the door for an unauthenticated attacker to change the plugin’s settings by tricking a website administrator into clicking a link or performing some other action.

Detected in:

Taxonomy filter fixed vulnerable versions: >= * <= 2.2.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.