Input validation vulnerability in Wordfence Security – Firewall, Malware Scan, and Login Security 7.6.0

The Wordfence Security – Firewall & Malware Scan plugin for WordPress had a security issue in versions up to 7.6.0. This issue allowed people with administrative privileges to inject malicious web scripts into the plugin’s settings. This meant that those malicious scripts could run whenever someone visited a page with the affected setting.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.