Input validation vulnerability in TS Poll – Survey, Versus Poll, Image Poll, Video Poll 2.3.9

A plugin called TS Poll, used for creating surveys, polls, images, and videos on WordPress websites, has a security flaw that makes it vulnerable to a type of hacking called SQL Injection. This happens when a user enters a specific code into a field called ‘orderby’, which is not properly protected. This could allow someone with high level access to the website, such as an administrator, to add their own code and access sensitive information from the website’s database.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.