Input validation vulnerability in Auto Featured Image (Auto Post Thumbnail) 4.0.0

The Auto Featured Image plugin for WordPress has a security issue called Server-Side Request Forgery. This means that attackers who have author-level access or higher can make web requests from the plugin to different places on the internet. This can be used to access and change information from internal services.

Detected in:

Auto Featured Image (Auto Post Thumbnail) open vulnerable versions: >= * <= 4.1.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.