Input validation vulnerability in iThemes Security 3.6.4

The iThemes Security plugin for WordPress has a security vulnerability in versions before 3.6.4 that could allow attackers to insert malicious code into pages on a website. When a user accesses an infected page, the malicious code will be executed, giving the attacker control of the website. To protect against this, it’s important to make sure you are running the latest version of the plugin.

Detected in:

iThemes Security fixed vulnerable versions: >= * < 3.6.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.