Input validation vulnerability in WP Multilang – Translation and Multilingual Plugin 2.4.19

A popular plugin called WP Multilang for WordPress has a security issue. This issue, known as Local File Inclusion, affects versions up to 2.4.19. It allows hackers who are logged in with contributor-level access or higher to add and run any files they want on the server. This means they can run any code written in those files. This could lead to unauthorized access, the exposure of private data, or even the ability to run code when normally safe files (like images) are uploaded and included.

Detected in:

WP Multilang – Translation and Multilingual Plugin fixed vulnerable versions: >= * <= 2.4.19

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.