Input validation vulnerability in Shibboleth 1.6

The Shibboleth plugin for WordPress (version 1.7 and earlier) has a security flaw that could allow malicious code to be executed. The flaw is due to the way the plugin uses a function called “”shibboleth_login_form”” in a file called “”shibboleth.php””. This could allow attackers to take advantage of the situation and insert malicious code.

Detected in:

Shibboleth fixed vulnerable versions: >= * <= 1.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.