Input validation vulnerability in Product Carousel Slider & Grid Ultimate for WooCommerce 1.9.10

A popular plugin for WordPress called “Product Carousel Slider & Grid Ultimate for WooCommerce” has a security vulnerability. This means that anyone with at least Contributor-level access can include and run any file on the website’s server. This could lead to unauthorized access, stealing of sensitive information, or running of malicious code. This vulnerability exists in all versions up to 1.9.10 and can be exploited by adding a specific code to the plugin’s shortcode.

Detected in:

Product Carousel Slider & Grid Ultimate for WooCommerce fixed vulnerable versions: >= * <= 1.9.10

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.