Input validation vulnerability in Tagbox – UGC Galleries, Social Media Widgets, User Reviews & Analytics 3.1

A plugin called Tagbox, which is used for adding user-generated content, social media widgets, user reviews, and analytics to WordPress, has a security vulnerability in all versions up to version 3.1. This means that unauthorized individuals can inject a PHP Object, which could potentially allow them to delete files, access sensitive information, or run code. This is possible because the plugin does not have a protective mechanism in place. If another plugin or theme on the website has a protective mechanism, it could prevent this vulnerability.

Detected in:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.