Input validation vulnerability in Create by Mediavine 1.9.4

The Create by Mediavine plugin for WordPress has a security issue called SQL Injection. This means that attackers can add their own code into the plugin, allowing them to access sensitive information from the database. This vulnerability exists in all versions up to 1.9.4 and can be exploited by anyone, even without an account.

Detected in:

Create fixed vulnerable versions:
Create by Mediavine fixed vulnerable versions: >= * <= 1.9.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.