Input validation vulnerability in Geo Controller 8.6.4

The Geo Controller plugin for WordPress has a security issue that allows attackers to insert harmful code into websites using the plugin. This can happen through a feature called the ‘/cache/shortcode’ REST API route. This vulnerability affects all versions of the plugin up to 8.6.4 and can be exploited by anyone, even without an account. Attackers could potentially delete important files, access private information, or run their own code on the website.

Detected in:

Geo Controller fixed vulnerable versions: >= * <= 8.6.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.