Input validation vulnerability in White Label CMS 1.5.3

The White Label CMS plugin for WordPress is vulnerable to a security issue called Cross-Site Request Forgery in versions up to and including 1.5.2. This is because the plugin does not have enough protection against unauthorised requests. This could mean that someone who is not allowed to access the site can inject dangerous code into pages. This code would be executed when an administrator visits an injected page – such as by clicking on a link.

Detected in:

White Label CMS fixed vulnerable versions: >= * < 1.5.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.