Input validation vulnerability in Product Input Fields for WooCommerce 1.12.1

The plugin called “Product Input Fields for WooCommerce” in WordPress has a security issue. This could allow people who are not logged in to upload any type of file they want to the website. This could potentially allow hackers to take control of the website from a remote location. It’s important to note that this vulnerability can only be exploited if the website administrator has not specified which types of files are allowed to be uploaded.

Detected in:

Product Input Fields for WooCommerce fixed vulnerable versions: >= * <= 1.12.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.