Input validation vulnerability in Aora – Home & Lifestyle Elementor WooCommerce Theme 1.3.9

The Aora theme for WordPress has a security issue known as Local File Inclusion, which affects versions 1.3.9 and below. This means that attackers who are not logged in can access and run any files they choose on the server. This can lead to bypassing security measures, accessing private information, and executing malicious code, even if the files appear to be harmless, such as images.

Detected in:

Aora - Home & Lifestyle Elementor WooCommerce Theme fixed vulnerable versions: >= * <= 1.3.9

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.