Black Friday Deals 40% OFF

Days
Hours
Minutes

Input validation vulnerability in wpForo Forum 2.4.5

A popular plugin called wpForo Forum for WordPress has a security issue that could allow hackers to inject harmful code into web pages. This affects all versions up to and including 2.4.5. The problem is caused by the plugin not properly filtering and protecting input from users. This means that attackers with a certain level of access could insert their own code into pages, which could then be executed whenever someone opens a certain type of file called SVG.

Detected in:

wpForo Forum fixed vulnerable versions: >= * <= 2.4.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.