Input validation vulnerability in HTML filter and csv-file search 2.7

The HTML filter and csv-file search plugin for WordPress is a computer program that is vulnerable to malicious attacks. In versions up to and including 2.7, an attacker with contributor-level permissions or higher can include and execute arbitrary files on the server. This means that the attacker can bypass access controls, obtain sensitive data, or even execute code that could harm the server. To protect against this, it is important to ensure that you are running the most recent version of the plugin.

Detected in:

HTML filter and csv-file search open vulnerable versions: >= * <= 2.7

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.