Input validation vulnerability in Web Push 1.4.0

The Web Push plugin for WordPress can be easily attacked by hackers in versions up to 1.4.0. This is because the plugin does not properly check for a security code, allowing attackers to change settings and insert harmful code onto a website. This can happen if a website administrator is tricked into clicking on a deceptive link.

Detected in:

Web Push open vulnerable versions: >= * <= 1.4.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.