Input validation vulnerability in Wordfence Security – Firewall, Malware Scan, and Login Security 5.2.3

The Wordfence plugin for WordPress is not secure in versions up to 5.2.3. This vulnerability allows an attacker who is not logged in to inject malicious code into web pages that will be executed when someone visits the page. This is possible because the plugin does not properly filter or escape user input.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.