Output validation vulnerability in Simple Link Directory 5.6.0

The Simple Link Directory plugin for WordPress is a tool that can be used to create a directory for websites. Unfortunately, in versions up to and including 5.6.0, it has a vulnerability which could give an attacker access to the system. This vulnerability lies in the ‘settings’ parameters (part of the Option Tree framework) which can be exploited to inject a type of malicious code known as a PHP Object. If other plugins or themes are installed on the target system, the attacker may be able to do things like delete files, access sensitive data, or even execute code.

Detected in:

Simple Link Directory fixed vulnerable versions: >= * <= 5.6.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.