Input validation vulnerability in Post Form – Registration Form – Profile Form for User Profiles – Frontend Content Forms for User Submissions (UGC) 2.8.17

The BuddyForms plugin for WordPress has a security issue in versions up to and including 2.8.17. This can allow attackers with certain levels of access to include and run their own files on the server, potentially allowing them to access private information or execute harmful code.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.