Input validation vulnerability in MkRapel Regiones y Ciudades de Chile para WC 4.3.0

The MkRapel Regiones y Ciudades de Chile para WC plugin for WordPress has a security issue in versions up to, and including, 4.3.0. This vulnerability allows someone who is not authenticated (not logged in) to make changes to the plugin’s settings. All they need to do is trick an administrator into clicking a link. This happens because the plugin is missing or not properly validating a security feature known as a nonce.

Detected in:

MkRapel Regiones y Ciudades de Chile para WC open vulnerable versions: >= * <= 4.3.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.