Input validation vulnerability in woocommerce-follow-up-emails 4.9.40

The WooCommerce Follow-Up Emails plugin for WordPress is vulnerable to a security issue. Attackers who have Follow-Up Emails Manager permissions or higher can upload any type of file to the website’s server. This can allow them to access the website remotely and execute malicious code. All versions of this plugin up to and including 4.9.40 are affected.

Detected in:

Woocommerce Follow-ups fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.