Input validation vulnerability in Contest Gallery – Contact Form, Upload Form, Social Share and Voting Plugin for WordPress 19.1.5

The Contest Gallery (Pro) plugin for WordPress is not secure in versions up to 19.1.5. People who have an account with author-level privileges or higher can use this to get sensitive information from the database. This happens because the plugin is not properly protecting the user supplied information and not properly preparing existing SQL queries.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.