Output validation vulnerability in Category Order and Taxonomy Terms Order 1.5.3

The Category Order and Taxonomy Terms Order plugin for WordPress is vulnerable to a security flaw which could allow someone with access to the system to cause harm. This flaw is present in version 1.5.2.2 and earlier and could allow someone who is signed in with at least “subscriber” level permissions to inject certain types of data that could cause further damage. This could potentially allow them to delete files, access private information or execute code. It is not known if any additional plugins or themes installed on the system could make the vulnerability worse.

Detected in:

Category Order and Taxonomy Terms Order fixed vulnerable versions: >= * < 1.5.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.