Input validation vulnerability in WP Links Page 4.9.6

The WP Links Page plugin used in WordPress is at risk of being hacked through a method called SQL Injection. This can happen in versions up to and including 4.9.6 because the plugin does not properly protect against user input and does not prepare its SQL query properly. This allows attackers who are logged in with subscriber-level access or higher, to add their own SQL queries to the existing ones, which can lead to them accessing sensitive information from the database.

Detected in:

WP Links Page open vulnerable versions: >= * <= 4.9.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.