Input validation vulnerability in WP Online Users Stats 1.0.0

The WP Online Users Stats plugin for WordPress, in versions up to 1.0.0, is at risk for SQL Injection. This happens because the user-supplied input is not properly protected and the existing SQL query is not adequately prepared. As a result, malicious individuals who are not logged in can add their own SQL queries to the existing ones, allowing them to access sensitive information from the database.

Detected in:

WP Online Users Stats open vulnerable versions: >= * <= 1.0.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.