Input validation vulnerability in Inline Image Upload for BBPress 1.1.18

The Inline Image Upload for BBPress plugin for WordPress is vulnerable to security issues in certain versions. Without the correct protection, it is possible for unauthenticated attackers to send a request that triggers a cleanup, if they are able to get a site administrator to take an action such as clicking on a link. This is due to the missing or incorrect validation on the hm_bbpui_admin_page function in versions up to 1.1.18.

Detected in:

Inline Image Upload for BBPress fixed vulnerable versions: >= * <= 1.1.18

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.