Input validation vulnerability in Daily Prayer Time 2024.08.26

The Daily Prayer Time plugin for WordPress has a security vulnerability that allows attackers to manipulate the ‘max_word’ feature of the ‘quran_verse’ shortcode. This can be done by those with Contributor-level access or higher, and it can lead to the extraction of sensitive information from the database. This issue affects all versions of the plugin up to and including 2024.08.26.

Detected in:

Daily Prayer Time open vulnerable versions: >= * <= 2024.08.26

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.