Input validation vulnerability in NitroPack – Cache & Speed Optimization for Core Web Vitals, Defer CSS & JavaScript, Lazy load Images 1.10.2

The NitroPack plugin for WordPress is not secure in versions up to, and including, 1.10.2. This is because there is no control or validation on certain functions which allows unauthenticated attackers to cause the site administrator to do something they shouldn’t, such as clicking on a link.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.