Input validation vulnerability in Team Manager – Team Member Showcase with grid, slider, table Elementor widget & shortcode 2.1.23

The Team Manager plugin for WordPress has a security issue called Local File Inclusion, which can be found in versions 2.1.23 and below. This means that attackers who are logged in with contributor-level access or higher can add and run any type of file on the server, including ones with PHP code. This can be used to get around security measures, get confidential information, or run code even if the file is supposed to be safe, like an image.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.