Input validation vulnerability in WordPress Shortcodes Plugin — Shortcodes Ultimate 5.12.0

The Shortcodes Ultimate plugin for WordPress has a security issue in versions up to and including 5.12.0 that could put the website at risk. Someone who is not authenticated (not logged in) may be able to make changes to the website without permission if they can get a website administrator to click on a link they provide. This is due to incorrect validation of requests made using the ajax_remove_preset() and ajax_get_preset() functions.

Detected in:

WordPress Shortcodes Plugin — Shortcodes Ultimate fixed vulnerable versions: >= * <= 5.12.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.